Looking for the vulnerability index of Invicti's legacy products?
WordPress Plugin Import all XML, CSV & TXT into WordPress Information Disclosure (3.6.74) - Vulnerability Database

WordPress Plugin Import all XML, CSV & TXT into WordPress Information Disclosure (3.6.74)

Description

WordPress Plugin Import all XML, CSV & TXT into WordPress is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information (usernames, hashed passwords and email addresses) that may help in launching further attacks. WordPress Plugin Import all XML, CSV & TXT into WordPress version 3.6.74 is vulnerable; prior versions are also affected.

Remediation

Update to plugin version 3.6.75 or latest

Related Vulnerabilities