The Semper Fi All in One SEO Pack plugin before 2.2.6 for WordPress does not consider the presence of password protection during generation of the Meta Description field, which allows remote attackers to obtain sensitive information by reading HTML source code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: jpcert

Published: 2015-04-03T10:00:00

Updated: 2015-04-03T10:57:00

Reserved: 2015-01-08T00:00:00


Link: CVE-2015-0902

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2015-04-03T10:59:08.867

Modified: 2015-04-03T15:15:24.940


Link: CVE-2015-0902

JSON object: View

cve-icon Redhat Information

No data.

CWE