Skip to content

Known CVE

WordPress Responsive Vector Maps < 6.4.2 - Arbitrary File Read

WordPress Responsive Vector Maps < 6.4.2 contains an arbitrary file read vulnerability because the plugin does not have proper authorization and validation of the rvm_upload_regions_file_path parameter in the rvm_import_regions AJAX action, allowing any authenticated user to read arbitrary files on the web server.

CVE-2021-24947

Medium2021CVSS 6.5CWE-352CWE-863

cve2021 · authenticated · wpscan · lfi · wp · wordpress · wp-plugin · lfr

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website