onepagewebsite (Unknown Versions) - Full Path Disclosure
mediumThe onepagewebsite Theme for WordPress is vulnerable to Sensitive Data Exposure in all versions via the index.php file. This can allow unauthenticated attackers to extract sensitive data including the full path of the WordPress installation.
- CVSS:
- 5.3
- Affected:
- up to *
- Fix:
- No patched version reported
- Disclosed:
- Dec 4, 2012