Unrated severityNVD Advisory· Published Apr 25, 2022· Updated Aug 3, 2024
Cab fare calculator < 1.0.4 - Unauthenticated LFI
CVE-2022-1391
Description
The Cab fare calculator WordPress plugin before 1.0.4 does not validate the controller parameter before using it in require statements, which could lead to Local File Inclusion issues.
Affected products
1- Range: 1.0.4
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- packetstormsecurity.com/files/166533/mitrex_refsource_MISC
- wpscan.com/vulnerability/680121fe-6668-4c1a-a30d-e70dd9be5aacmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.