Unauthenticated File Reading Vulnerability in Advanced AJAX Page Loader Plugin for WordPress

Unauthenticated File Reading Vulnerability in Advanced AJAX Page Loader Plugin for WordPress

CVE-2016-10929 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The advanced-ajax-page-loader plugin before 2.7.7 for WordPress has no protection against the reading of uploaded files when not logged in.

Learn more about our Wordpress Pen Testing.