← back
CVE-2015-20067

WP Attachment Export < 0.2.4 - Unauthenticated Posts Download

EPSS 8.2%CWE-862
The WP Attachment Export WordPress plugin before 0.2.4 does not have proper access controls, allowing unauthenticated users to download the XML data that holds all the details of attachments/posts on a Wordpress

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →