CVE-2018-8719
MEDIUM NUCLEIWP Security Audit Log <3.1.1 - Info Disclosure
Title source: llmDescription
An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp-content/uploads/wp-security-audit-log/* files is not restricted. For example, these files are indexed by Google and allows for attackers to possibly find sensitive information.
Exploits (1)
Nuclei Templates (1)
WordPress WP Security Audit Log 3.1.1 - Information Disclosure
MEDIUMby LogicalHunter
Scores
CVSS v3
5.3
EPSS
0.1532
EPSS Percentile
94.7%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Details
CWE
CWE-532
Status
published
Products (1)
wpsecurityauditlog/wp_security_audit_log
3.1.1
Published
Apr 04, 2018
Tracked Since
Feb 18, 2026