ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Cloud Safe 365 Plugin - Remote File Disclosure

Product
Cloud Safe 365
Description
Cloud Safe 365 plugin is prone to a remote file disclosure vulnerability. It allows an attacker to view local files in the context of the web server process. Other attacks are also possible.
Solution
Update the plugin.
Classification
Type BYPASS
OWASP Top 10 A7: Missing Function Level Access Control
References
Exploit-DB
CVE
Name CVE-N/A
Versions
Affected In 1.0
Fixed In 1.1
Disclosure date
2012-08-28
Credits
Jan Van Niekerk