Wpsecurityauditlog

Wp Security Audit Log

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Published 06.04.2018 16:29:00
  • Last modified 21.11.2024 02:11:21

Cross-site request forgery (CSRF) vulnerability in WP Security Audit Log plugin before 1.2.5 for WordPress allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Exploit
  • EPSS 7.24%
  • Published 04.04.2018 19:29:00
  • Last modified 21.11.2024 04:14:12

An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp-content/uploads/wp-security-audit-log/* files is not restricted. For example, these files are indexed by Google and allows for attackers to possibly find se...