WordPress Mobile Pack plugin 'content. php' Information Leakage Vulnerability
Release date:
Updated on:
Affected Systems:
WordPress Mobile Pack 2.0.1
Description:
--------------------------------------------------------------------------------
Bugtraq id: 69292
CVE (CAN) ID: CVE-2014-5337
The WordPress Mobile Pack plug-in can package existing content to Mobile Web applications across platforms.
WordPress Mobile Pack 2.0.1 and other versions have the information leakage vulnerability in the 'content. php' implementation. Attackers can exploit this vulnerability to obtain sensitive information.
<* Source: Tom Adams
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
WordPress
---------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://wordpress.org/plugins/wordpress-mobile-pack/
This article permanently updates the link address: