Source |
CVE Liste |
Identifiant |
3628931 |
Date de publication |
2021-11-08 18:15:09 (vue: 2021-11-08 20:05:55) |
Titre |
CVE-2021-24695 |
Texte |
The Simple Download Monitor WordPress plugin before 3.9.6 saves logs in a predictable location, and does not have any authentication or authorisation in place to prevent unauthenticated users to download and read the logs containing Sensitive Information such as IP Addresses and Usernames |
Envoyé |
Oui |
Condensat |
2021 24695 addresses any authentication authorisation before containing cve does download have information location logs monitor not place plugin predictable prevent read saves sensitive simple such unauthenticated usernames users wordpress |
Tags |
|
Stories |
|
Notes |
|
Move |
|