NA

CVE-2024-1076

Published: 08/05/2024 Updated: 08/05/2024

Vulnerability Summary

The SSL Zen WordPress plugin prior to 4.6.0 only relies on the use of .htaccess to prevent visitors from accessing the site's generated private keys, which allows an malicious user to read them if the site runs on a server who doesn't support .htaccess files, like NGINX.