CVE-2016-20081
HIGHWordPress Plugin HB Audio Gallery Lite 1.0.0 Path Traversal File Download
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2016-20081. PoCs published by CrashBandicot.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file download vulnerability in the WordPress plugin HB Audio Gallery Lite. The vulnerability arises from improper handling of user-supplied input in the 'file_path' parameter, allowing attackers to download sensitive files like 'wp-config.php'.
Description
WordPress Plugin HB Audio Gallery Lite 1.0.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrary files by manipulating the file_path parameter. Attackers can send requests to the audio-download.php endpoint with directory traversal sequences to access sensitive files like wp-config.php outside the intended gallery directory.
Exploits (1)
This exploit demonstrates an arbitrary file download vulnerability in the WordPress plugin HB Audio Gallery Lite. The vulnerability arises from improper handling of user-supplied input in the 'file_path' parameter, allowing attackers to download sensitive files like 'wp-config.php'.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N