Vulnerabilities > CVE-2019-1000031 - Memory Leak vulnerability in Article2Pdf Project Article2Pdf

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
article2pdf-project
CWE-401

Summary

A disk space or quota exhaustion issue exists in article2pdf_getfile.php in the article2pdf Wordpress plugin 0.24, 0.25, 0.26, 0.27. Visiting PDF generation link but not following the redirect will leave behind a PDF file on disk which will never be deleted by the plug-in.

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/152236/wparticle2pdf024-dosdisclose.txt
idPACKETSTORM:152236
last seen2019-03-26
published2019-03-26
reporterChristian Lerrahn
sourcehttps://packetstormsecurity.com/files/152236/WordPress-article2pdf-0.24-DoS-File-Deletion-Disclosure.html
titleWordPress article2pdf 0.24 DoS / File Deletion / Disclosure