Description

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized arbitrary file deletion in versions up to, and including, 0.9.0.2 due to a lack of capability checking and insufficient path validation. This makes it possible for authenticated users with minimal permissions to delete arbitrary files from the server.

INFO

Published Date :

2024-10-16T06:43:34.541Z

Last Modified :

2024-10-16T18:05:09.345Z

Source :

Wordfence
AFFECTED PRODUCTS

The following products are affected by CVE-2020-36836 vulnerability.

Vendors Products
Wpfastestcache
  • Wp Fastest Cache

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact