The Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 doesn’t restrict access to detailed scan logs, which allows a malicious actor to discover local paths and portions of the site’s code
CPE | Name | Operator | Version |
---|---|---|---|
quttera_web_malware_scanner | lt | 3.4.2.1 |