CVE Database /
CVE-2024-31300
CVE · High
CVE-2024-31300 — Easy Social Share Buttons [easy-social-share-buttons3] < 9.5
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-31300
|
Easy Social Share Buttons [easy-social-share-buttons3] < 9.5 |
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
High
8.5
|
< 9.5
|
9.5 |
2024-04-05 |
—
|
CVE-2024-31300
The Easy Social Share Buttons plugin in versions before 9.5 contains a local file inclusion vulnerability that allows attackers to access and display the contents of files stored on the affected website. This flaw could expose sensitive information such as database credentials, potentially leading to unauthorized database access depending on how the site is configured. The vulnerability was identified by Rafie Muhammad and addressed in version 9.5 and later.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings