CVE-2015-5468 | WP e-Commerce Shop Styling Plugin up to 2.5 on WordPress includes/download.php filename path traversal (EDB-37530)
A vulnerability was found in WP e-Commerce Shop Styling Plugin up to 2.5 on WordPress. It has been classified as problematic. Affected is an unknown function of the file includes/download.php. The manipulation of the argument filename leads to path traversal.
This vulnerability is traded as CVE-2015-5468. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.