Simple Ads Manager 2.5.94 & 2.5.96 - Information Disclosure

2015-04-02 00:00
ITAS Team

Strategic Overview

Status
Patched in 2.5.97
Affected PluginSimple Ads Manager
Affected Version2.5.94 – 2.5.96 · 2 branches
CVSS5.3Medium
CVECVE-2015-2826
View all Simple Ads Manager vulnerabilities

Vulnerability Overview

WordPress Simple Ads Manager plugin 2.5.94 and 2.5.96 allows remote attackers to obtain sensitive information.

Technical Analysis

REMEDIATION: Update to version 2.5.97, or a newer patched version --- IDENTIFIER: CWE-200 (Exposure of Sensitive Information to an Unauthorized Actor) The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C