CVE-2012-0896

N/A Unknown
Published: January 20, 2012 Modified: April 29, 2026
View on NVD

Description

Absolute path traversal vulnerability in download.php in the Count Per Day module before 3.1.1 for WordPress allows remote attackers to read arbitrary files via the f parameter.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/78270
Source: cve@mitre.org
Exploit
http://secunia.com/advisories/47529
Source: cve@mitre.org
Vendor Advisory
http://www.exploit-db.com/exploits/18355
Source: cve@mitre.org
Exploit
http://osvdb.org/78270
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://packetstormsecurity.org/files/108631/countperday-downloadxss.txt
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://plugins.trac.wordpress.org/changeset/488883/count-per-day
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/47529
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://wordpress.org/extend/plugins/count-per-day/changelog/
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.exploit-db.com/exploits/18355
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://www.securityfocus.com/bid/51402
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/72385
Source: af854a3a-2127-422b-91ae-364da2661108

16 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
25.2%
98th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

count_per_day_project tom_braider wordpress