ZeroHour

CVE-2018-8719

PoC
CVSS 3.0
5.3 medium
EPSS
16%p97
Published
()
Modified
Description

An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp-content/uploads/wp-security-audit-log/* files is not restricted. For example, these files are indexed by Google and allows for attackers to possibly find sensitive information.

Vendors
wpsecurityauditlog
Products
wp security audit log
Ecosystems
WordPress
Weakness
CWE-532
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.