Vulnerability | WordPress Plugin Extensive VC Addons File Inclusion Vulnerability |
---|---|
Chinese name | WordPress Extensive VC Addons 插件 options[template] 文件包含漏洞 |
CVSS core | 9.8 |
FOFA Query (click to view the results directly) | body="wp-content/plugins/extensive-vc-addon" |
Number of assets affected | 2583 |
Description | Extensive VC is a powerful WordPress tool which allows you to add unique, flexible and fully responsive shortcode elements on your site. xtensive VC Addons < 1.9.1 is vulnerable to Local File Inclusion. |
Impact | Attackers can use this vulnerability to read the leaked source code, database configuration files, etc., resulting in an extremely insecure website. |