The EasyCart (wp-easycart) plugin prior to 2.0.6 for WordPress allows remote malicious users to obtain configuration information via a direct request to inc/admin/phpinfo.php, which calls the phpinfo function.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
levelfourdevelopment wp-easycart 2.0.1 |
||
levelfourdevelopment wp-easycart 2.0.4 |
||
levelfourdevelopment wp-easycart 2.0.2 |
||
levelfourdevelopment wp-easycart |
||
levelfourdevelopment wp-easycart 2.0.3 |