Description
WordPress Plugin Photocart Link 1.6 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary files by exploiting insufficient input validation in decode.php. Attackers can supply base64-encoded file paths in the 'id' parameter to the decode.php endpoint to retrieve sensitive files like wp-config.php containing database credentials and configuration data.
Problem types
Product status
Credits
CrashBandicot @DosPerl
References
www.exploit-db.com/exploits/39623 (ExploitDB-39623)
fr.wordpress.org/plugins/photocart-link/ (Official Product Homepage)
www.vulncheck.com/...ink-local-file-inclusion-via-decode-php (VulnCheck Advisory: WordPress Plugin Photocart Link 1.6 Local File Inclusion via decode.php)