CVE · High

CVE-2020-11732 — Media Library Assistant [media-library-assistant] < 2.82

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2020-11732 Media Library Assistant [media-library-assistant] < 2.82 High 7.5 < 2.82 2.82 2019-12-15

CVE-2020-11732

The Media Library Assistant WordPress plugin through version 2.81 contains an unauthenticated local file inclusion vulnerability that allows attackers to access files on the server without requiring login credentials. This flaw was discovered by Daniel Monzón and has a limited scope in terms of the files that can be exposed through this method.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.