The Job Manager & Career WordPress plugin before 1.4.4 contains a vulnerability in the Directory Listings system, which allows an unauthorized user to view and download private files of other users. This vulnerability poses a serious security threat because it allows an attacker to gain access to confidential data and files of other users without their permission.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/911d495c-3867-4259-a73a-572cd4fccdde | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2023-11-27T16:21:59.373Z
Updated: 2023-11-27T16:21:59.373Z
Reserved: 2023-11-01T14:54:21.468Z
Link: CVE-2023-5906
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-27T17:15:09.487
Modified: 2023-12-01T20:40:23.673
Link: CVE-2023-5906
JSON object: View
Redhat Information
No data.
CWE