Hugo Santiago

3 exploits Active since Feb 2015
CVE-2014-9734 EXPLOITDB text WORKING POC
Slider Revolution <4.2 - Path Traversal
Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php.
CVE-2015-1579 EXPLOITDB text WORKING POC
Elegant Themes Divi - Path Traversal
Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php. NOTE: this vulnerability may be a duplicate of CVE-2014-9734.
EIP-2026-108333 EXPLOITDB text WORKING POC
Joomla! Component com_docman - Multiple Vulnerabilities