CVE-2014-5187
NUCLEITom M8te Plugin 1.5.3 - Path Traversal via File Parameter
Title source: llmExploitation Summary
CVE-2014-5187 has a Nuclei detection template available — see the Nuclei card below for the Shodan/FOFA recon queries.
Description
Directory traversal vulnerability in the Tom M8te (tom-m8te) plugin 1.5.3 for WordPress allows remote attackers to read arbitrary files via the file parameter to tom-download-file.php.
Nuclei Templates (1)
Tom M8te (tom-m8te) Plugin 1.5.3 - Directory Traversal
MEDIUMVERIFIEDby DhiyaneshDK
References (1)
Core 1
Core References
Exploit x_refsource_misc
http://codevigilant.com/disclosure/wp-plugin-tom-m8te-local-file-inclusion
Scores
EPSS
0.0023
EPSS Percentile
46.4%
Details
CWE
CWE-22
Status
published
Products (1)
tom_m8te_plugin_project/tom-m8te_plugin
1.5.3
Published
Aug 06, 2014
Tracked Since
Feb 18, 2026