CVE-2015-9488
Almera Responsive Portfolio Site Template < 2015-05-15 - Sensitive Information Disclosure
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The ThemeMakers Almera Responsive Portfolio Site Template component through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
El componente ThemeMakers Almera Responsive Portfolio Site Template versiones hasta el 15-05-2015 para WordPress, permite a atacantes remotos obtener información confidencial (tal y como valores de los parámetros user_login, user_pass y user_email) por medio de una petición directa para el URI wp-content/uploads/tmm_db_migrate/wp_users.dat.
The ThemeMakers Almera Responsive Portfolio Site Template component through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI. **This template is a site theme, not a WordPress theme.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-05-15 CVE Published
- 2019-10-11 CVE Reserved
- 2023-09-17 EPSS Updated
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://packetstormsecurity.com/files/131957 | 2024-08-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Almera Responsive Portfolio Site Template Project Search vendor "Almera Responsive Portfolio Site Template Project" | Almera Responsive Portfolio Site Template Search vendor "Almera Responsive Portfolio Site Template Project" for product "Almera Responsive Portfolio Site Template" | <= 2015-05-15 Search vendor "Almera Responsive Portfolio Site Template Project" for product "Almera Responsive Portfolio Site Template" and version " <= 2015-05-15" | wordpress |
Affected
|