mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 21:18:06 +02:00
42 lines
1.8 KiB
Markdown
42 lines
1.8 KiB
Markdown
### [CVE-2015-6668](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6668)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
The Job Manager plugin before 0.7.25 allows remote attackers to read arbitrary CV files via a brute force attack to the WordPress upload directory structure, related to an insecure direct object reference.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://vagmour.eu/cve-2015-6668-cv-filename-disclosure-on-job-manager-wordpress-plugin/
|
|
- https://wpvulndb.com/vulnerabilities/8167
|
|
|
|
#### Github
|
|
- https://github.com/0xwh1pl4sh/CVE-2015-6668
|
|
- https://github.com/20142995/nuclei-templates
|
|
- https://github.com/3stefani/HTB-writeups
|
|
- https://github.com/4n0nym0u5dk/CVE-2015-6668
|
|
- https://github.com/ARPSyndicate/cve-scores
|
|
- https://github.com/ARPSyndicate/cvemon
|
|
- https://github.com/G01d3nW01f/CVE-2015-6668
|
|
- https://github.com/H3xL00m/CVE-2015-6668
|
|
- https://github.com/Ki11i0n4ir3/CVE-2015-6668
|
|
- https://github.com/N3rdyN3xus/CVE-2015-6668
|
|
- https://github.com/NoTrustedx/Job-Manager-Disclosure
|
|
- https://github.com/NyxByt3/CVE-2015-6668
|
|
- https://github.com/PuddinCat/GithubRepoSpider
|
|
- https://github.com/Sp3c73rSh4d0w/CVE-2015-6668
|
|
- https://github.com/c0d3cr4f73r/CVE-2015-6668
|
|
- https://github.com/crypticdante/CVE-2015-6668
|
|
- https://github.com/h3x0v3rl0rd/CVE-2015-6668
|
|
- https://github.com/h3xcr4ck3r/CVE-2015-6668
|
|
- https://github.com/jimdiroffii/CVE-2015-6668
|
|
- https://github.com/k4u5h41/CVE-2015-6668
|
|
- https://github.com/n0-traces/cve_monitor
|
|
- https://github.com/n3ov4n1sh/CVE-2015-6668
|
|
- https://github.com/n3rdh4x0r/CVE-2015-6668
|
|
- https://github.com/nika0x38/CVE-2015-6668
|
|
|