Medium severity4.3NVD Advisory· Published Nov 27, 2023· Updated Jun 17, 2026
CVE-2023-4297
CVE-2023-4297
Description
The Mmm Simple File List WordPress plugin through 2.3 does not validate the generated path to list files from, allowing any authenticated users, such as subscribers, to list the content of arbitrary directories.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=2.3
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/9ff85b06-819c-459e-90a9-6151bfd70978nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.