WordPress 2.7.1 places the username of a post's author in an HTML comment, which allows remote malicious users to obtain sensitive information by reading the HTML source.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wordpress wordpress 2.7.1 |