WordPress ShareYourCart plugin Path-Disclosure Vulnerability
BID:53241
Info
WordPress ShareYourCart plugin Path-Disclosure Vulnerability
| Bugtraq ID: | 53241 |
| Class: | Unknown |
| CVE: |
CVE-2012-4332 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 25 2012 12:00AM |
| Updated: | Aug 16 2012 01:30PM |
| Credit: | Reported by the vendor. |
| Vulnerable: |
WordPress ShareYourCart 1.7 |
| Not Vulnerable: |
WordPress ShareYourCart 1.7.1 |
Discussion
WordPress ShareYourCart plugin Path-Disclosure Vulnerability
The ShareYourCart plugin for WordPress is vulnerable to a path-disclosure vulnerability.
Remote attackers can exploit this issue to obtain sensitive information that may lead to further attacks.
Versions prior to ShareYourCart 1.7.1 are vulnerable.
The ShareYourCart plugin for WordPress is vulnerable to a path-disclosure vulnerability.
Remote attackers can exploit this issue to obtain sensitive information that may lead to further attacks.
Versions prior to ShareYourCart 1.7.1 are vulnerable.
Exploit / POC
WordPress ShareYourCart plugin Path-Disclosure Vulnerability
Attackers can exploit this issue using a web browser.
Attackers can exploit this issue using a web browser.
Solution / Fix
WordPress ShareYourCart plugin Path-Disclosure Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
WordPress ShareYourCart plugin Path-Disclosure Vulnerability
References:
References:
- ShareYourCart Changelog (WordPress)
- ShareYourCart homepage (WordPress)