CVE-2015-10115
Summary
| CVE | CVE-2015-10115 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-06-05 18:15:00 UTC |
| Updated | 2023-11-07 02:24:00 UTC |
| Description | A vulnerability, which was classified as problematic, was found in WooSidebars Sidebar Manager Converter Plugin up to 1.1.1 on WordPress. This affects the function process_request of the file classes/class-woosidebars-sbm-converter.php. The manipulation leads to open redirect. It is possible to initiate the attack remotely. Upgrading to version 1.1.2 is able to address this issue. The patch is named a0efb4ffb9dfe2925b889c1aa5ea40b4abbbda8a. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-230655. |
Risk And Classification
Problem Types: CWE-601
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Woocommerce | Sidebar Manager To Woosidebars Converter | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2015-10115: WooSidebars Sidebar Manager Converter Plugin class-woosidebars-sbm-converter.php process_request redirect | MISC | vuldb.com | |
| V1.1.2 - Security Fix for _query_arg vulnerability. · wp-plugins/woosidebars-sbm-converter@a0efb4f · GitHub | MISC | github.com | |
| Login required | MISC | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.