Description
|
|
Several vulnerabilities have been identified in Vulcan Theme for Wordpress.
A remote attacker could exploit it, in the "src" parameter of the "wp-content/themes/vulcan/timthumb.php" page via:
- a cross-site scripting
- a full path disclosure
- a security bypass
- a denial of service
- an arbitrary file include.
Proofs of concept are available.
|