CVE-2014-5337 Information
Feb 14, 2021
cve
Description
The WordPress Mobile Pack plugin before 2.0.2 for WordPress does not properly restrict access to password protected posts which allows remote attackers to obtain sensitive information via an exportarticles action to export/content.php.
Reference
http://secunia.com/advisories/60584 http://wordpress.org/plugins/wordpress-mobile-pack/changelog/ http://www.securityfocus.com/bid/69292 https://security.dxw.com/advisories/information-disclosure-vulnerability-in-wordpress-mobile-pack-allows-anybody-to-read-password-protected-posts/
Share on: