ZeroHour

CVE-2022-2544

PoC
CVSS 3.1
7.5 high
EPSS
4%p91
Published
()
Modified
Description

The Ninja Job Board WordPress plugin before 1.3.3 does not protect the directory where it stores uploaded resumes, making it vulnerable to unauthenticated Directory Listing which allows the download of uploaded resumes.

Vendors
wpmanageninja
Products
ninja job board
Ecosystems
WordPress
Weakness
CWE-425
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.