Product
The Content Egg plugin for WordPress is vulnerable to a path traversal flaw in the 'img_file' parameter, allowing authenticated attackers with author-level permissions to delete arbitrary files on the web server.