CVE-2014-4940: Tera Charts Plugin Project Tera-Charts
Medium severity, CVSS 5.0. EPSS: 19.3% chance of exploitation in the next 30 days.
Multiple directory traversal vulnerabilities in Tera Charts (tera-charts) plugin 0.1 for WordPress allow remote attackers to read arbitrary files via a .. (dot dot) in the fn parameter to (1) charts/treemap.php or (2) charts/zoomabletreemap.php.
Affected products
- Tera Charts Plugin Project Tera-Charts: version 0.1 only
Published 2014-07-11. Last modified 2026-06-17.