CVE-2023-6592
MEDIUM 5.3EPSS 0.9%
The FastDup WordPress plugin before 2.2 does not prevent directory listing in sensitive directories containing export files.
- CVSS v3.1
- 5.3 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N - CVSS v3.1
- 5.3 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N - EPSS
- 0.91% chance of exploitation in the next 30 days, 58th percentile
- Nuclei
- medium · CWE-548
- Published
- 2024-01-16
- Updated
- 2025-06-20
Proof-of-concept exploits (2)
- https://research.cleantalk.org/cve-2023-6592-fastdup-database-users-password-leak-poc-exp…
- https://wpscan.com/vulnerability/a39bb807-b143-4863-88ff-1783e407d7d4/