Simple Gmail Login < 1.1.4 - Sensitive Information Disclosure
mediumsimple-gmail-login.php in the Simple Gmail Login plugin before 1.1.4 for WordPress allows remote attackers to obtain sensitive information via a request that lacks a timezone, leading to disclosure of the installation path in a stack trace.
- CVSS:
- 5.3
- Affected:
- up to 1.1.4
- Fixed in:
- 1.1.4
- Disclosed:
- Nov 24, 2012