WordPress Stop User Enumeration Plugin 'author' Parameter User Enumeration Weakness
BID:65340
Info
WordPress Stop User Enumeration Plugin 'author' Parameter User Enumeration Weakness
| Bugtraq ID: | 65340 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 01 2014 12:00AM |
| Updated: | Feb 01 2014 12:00AM |
| Credit: | Andrew Horton |
| Vulnerable: |
llocally Stop User Enumeration 1.2.4 |
| Not Vulnerable: | |
Discussion
WordPress Stop User Enumeration Plugin 'author' Parameter User Enumeration Weakness
Stop User Enumeration Plugin for WordPress is prone to a user-enumeration weakness.
An attacker may leverage this issue to harvest valid usernames, which may aid in further attacks.
Stop User Enumeration 1.2.4 is vulnerable; other versions may also be affected.
Stop User Enumeration Plugin for WordPress is prone to a user-enumeration weakness.
An attacker may leverage this issue to harvest valid usernames, which may aid in further attacks.
Stop User Enumeration 1.2.4 is vulnerable; other versions may also be affected.