The Semper Fi All in One SEO Pack plugin before 2.2.6 for WordPress does not consider the presence of password protection during generation of the Meta Description field, which allows remote attackers to obtain sensitive information by reading HTML source code.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2015-04-03T10:00:00

Updated: 2024-08-06T04:26:11.396Z

Reserved: 2015-01-08T00:00:00

Link: CVE-2015-0902

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2015-04-03T10:59:08.867

Modified: 2015-04-03T15:15:24.940

Link: CVE-2015-0902

cve-icon Redhat

No data.