CVE-2014-8799
CVSS Score Not Available
91.13%
HIGH RiskEPSS (100th percentile)
Directory traversal vulnerability in the dp_img_resize function in php/dp-functions.php in the DukaPress plugin before 2.5.4 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter to lib/dp_image.php.
Published: 11/28/2014
Modified: 4/12/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
91.13%HIGH Exploitation Risk
100th percentile
This vulnerability has a 91.13% probability of being exploited in the next 30 days, ranking higher than 100% of all scored CVEs.