CVE-2015-1579
EXPLOITED NUCLEIElegant Themes Divi - Path Traversal
Title source: llmDescription
Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php. NOTE: this vulnerability may be a duplicate of CVE-2014-9734.
Exploits (4)
exploitdb
WORKING POC
VERIFIED
by Hugo Santiago · textwebappsphp
https://www.exploit-db.com/exploits/34511
nomisec
WORKING POC
28 stars
by paralelo14 · infoleak
https://github.com/paralelo14/WordPressMassExploiter
Nuclei Templates (1)
WordPress Slider Revolution - Local File Disclosure
MEDIUMby pussycat0x
Scores
EPSS
0.8082
EPSS Percentile
99.2%
Details
VulnCheck KEV
2014-09-03
CWE
CWE-22
Status
published
Products (1)
elegantthemes/divi
Published
Feb 11, 2015
Tracked Since
Feb 18, 2026