← Back

Advanced Dewplayer

advanced_dewplayer

Vendor: Westerndeal • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Westerndeal
Wordpress
2Advanced Dewplayer
Wordpress
Apr 29, 2026
Jan 3, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Directory traversal vulnerability in download-file.php in the Advanced Dewplayer plugin 1.2 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the dew_file parameter.