The export/content.php exportarticle feature in the wordpress-mobile-pack plugin before 2.1.3 2015-06-03 for WordPress allows remote attackers to obtain sensitive information because the content of a privately published post is sent in JSON format.
References
Link Resource
https://seclists.org/fulldisclosure/2015/Jul/97 Exploit Mailing List Third Party Advisory
https://wordpress.org/plugins/wordpress-mobile-pack/#developers Release Notes Third Party Advisory
https://www.openwall.com/lists/oss-security/2015/07/19/1 Mailing List Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-10-01T23:00:00

Updated: 2018-10-01T23:57:01

Reserved: 2018-10-01T00:00:00


Link: CVE-2015-9269

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-10-01T23:29:00.297

Modified: 2018-11-23T19:18:32.717


Link: CVE-2015-9269

JSON object: View

cve-icon Redhat Information

No data.

CWE