WordPress Plugin Vulnerabilities

Total Upkeep by BoldGrid < 1.14.10 - Sensitive Data Disclosure (Server IP Address, UID etc)

Description

The plugin does not restrict access to a file containing sensitive information, such as the real server IP address, UID and so on, which may help attackers in further attacks.

Proof of Concept

Affects Plugins

Fixed in 1.14.10

References

Exploitdb

Classification

Type
ACCESS CONTROLS
CWE

Miscellaneous

Original Researcher
Wadeek
Verified
Yes

Timeline

Publicly Published
2020-12-14 (about 5 years ago)
Added
2020-12-14 (about 5 years ago)
Last Updated
2020-12-15 (about 5 years ago)

Other