CVE-2019-1000031
Description
A disk space or quota exhaustion issue exists in article2pdf_getfile.php in the article2pdf Wordpress plugin 0.24, 0.25, 0.26, 0.27. Visiting PDF generation link but not following the redirect will leave behind a PDF file on disk which will never be deleted by the plug-in.
CWE
- (none)
Affected
- article2pdf / article2pdf Wordpress plug-in — v=0.24 [affected]; v=0.25 [affected]; v=0.26 [affected]; v=0.27 [affected]
CVSS
- (none)
References
- https://seclists.org/bugtraq/2019/Mar/49 mailing-list, x_refsource_BUGTRAQ
- http://packetstormsecurity.com/files/152236/WordPress-article2pdf-0.24-DoS-File-Deletion-Disclosure.html x_refsource_MISC
- https://wpvulndb.com/vulnerabilities/9246 x_refsource_MISC
Source
cvelistV5-main/cves/2019/1000xxx/CVE-2019-1000031.json