CVE-2018-18576

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
17/03/2020
Last modified:
19/03/2020

Description

The Hustle (aka wordpress-popup) plugin through 6.0.5 for WordPress allows Directory Traversal to obtain a directory listing via the views/admin/dashboard/ URI.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:incsub:hustle:*:*:*:*:*:wordpress:*:* 6.0.5 (including)