Exploits / Vulnerability Discovered : 2018-03-30 |
Type : webapps |
Platform : php
This exploit / vulnerability Wordpress plugin wp security audit log 3.1.1 sensitive information disclosure is for educational purposes only and if it is used you will do on your own risk!
Description:
No protection on the wp-content/uploads/wp-security-audit-log/*
which is indexed by google and allows for attackers to possibly find user information (bad login attempts)