Description
The Export and Import Users and Customers plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 2.6.2 via the download_file() function. This makes it possible for authenticated attackers, with Administrator-level access and above, to read the contents of arbitrary log files on the server, which can contain sensitive information.
Problem types
CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Product status
Any version
Timeline
| 2025-03-21: | Disclosed |
Credits
Hay Mizrachi
References
www.wordfence.com/...-59f4-4d61-a165-a830ccfb696a?source=cve
plugins.trac.wordpress.org/...in/modules/history/history.php
wordpress.org/...customers-import-export-for-wp-woocommerce/
plugins.trac.wordpress.org/changeset/3259688/