The Duplicator WordPress plugin before 1.4.7.1 does not...
Moderate severity
Unreviewed
Published
Aug 23, 2022
to the GitHub Advisory Database
•
Updated Jul 4, 2023
Description
Published by the National Vulnerability Database
Aug 22, 2022
Published to the GitHub Advisory Database
Aug 23, 2022
Last updated
Jul 4, 2023
The Duplicator WordPress plugin before 1.4.7.1 does not authenticate or authorize visitors before displaying information about the system such as server software, php version and full file system path to the site.
References