Local File Inclusion in CodeMShop WordPress Payment Plugin
CVE-2024-56281
7.5HIGH
What is CVE-2024-56281?
The CodeMShop 워드프레스 결제 심플페이 plugin contains a vulnerability that allows attackers to exploit improper control of filename parameters leading to Local File Inclusion. This flaw can enable unauthorized access to sensitive files on the server, potentially leading to compromise of the web application. Affected versions include all prior to 5.2.0, necessitating immediate attention for users of this plugin to mitigate security risks.
Affected Version(s)
워드프레스 결제 심플페이 <= 5.2.0