Vulnerabilities protected by our LFI: Local File Inclusion firewall rule

428,801
Attacks Blocked in Past 24 Hours

Showing 101-120 of 160 Vulnerabilities

Title CVE ID CVSS Vector Date
WP Fastest Cache <= 0.8.5.9 - Local File Inclusion 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H July 13, 2016
Ultimate Member <= 1.3.64 - Local File Inclusion 9.1 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H July 10, 2016
WP Fastest Cache <= 0.8.5.7 - Local File Inclusion 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H May 24, 2016
IMDB Profile Widget < 1.0.9 - Local File Inclusion CVE-2016-10991 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N March 26, 2016
Brandfolder – Digital Asset Management Simplified. < 3.0.1 - Local/Remote File Inclusion 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H March 22, 2016
A/B Test for WordPress <= 1.0.7 - Local File Inclusion 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H March 21, 2016
Gwolle Guestbook <= 1.5.3 - Remote File Inclusion CVE-2015-8351 9.0 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H November 4, 2015
Easy2Map <= 1.2.9 - Directory Traversal and Local File Inclusion CVE-2015-7669 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H October 5, 2015
mTheme-Unus (All Versions) - Local File Inclusion 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 27, 2015
MyPixs <= 0.3 - Local File Inclusion CVE-2015-1000012 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 15, 2015
Memphis Documents Library <= 2.6.16 - Local File Inclusion CVE-2014-10384 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 4, 2015
Memphis Documents Library <= 2.6.16 - Remote File Inclusion CVE-2014-10383 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 4, 2015
BJ Lazy Load < 1.0 - Remote File Inclusion via TimThumb CVE-2015-9415 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 2, 2015
NextGen Gallery <= 2.1.10 - Local File Inclusion CVE-2015-9538 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N August 28, 2015
Subscribe to Comments <= 2.1.2 - Local File Includion 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 15, 2015
GD bbPress Attachments < 2.3 - Directory Traversal CVE-2015-5482 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 9, 2015
Really Simple Guest Post <= 1.0.6 - Local File Inclusion 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H June 5, 2015
ZM Ajax Login & Register <= 1.0.9 - Local File Inclusion CVE-2015-4153 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H June 5, 2015
Gmedia Photo Gallery <= 1.6.4 - Local File Inclusion 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 27, 2015
Fusion Engage <= 1.0.5 - Local File Inclusion 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N April 10, 2015

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation