CVE
CVE-2015-5471
5.3
CVSS
Description
Absolute path traversal vulnerability in include/user/download.php in the Swim Team plugin 1.44.10777 for WordPress allows remote attackers to read arbitrary files via a full pathname in the file parameter.
Attack Vector
-
Privileges Req.
-
User Interaction
-
Updated Sep 22, 2026View on NVD →
This CVE is in S4E's catalog, but no public scanner is mapped to it yet.
Monitor this CVE on your assets
S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.
Create a free account →