CVE-2023-5003
- Reference to the description:
- Description:
- The Active Directory Integration / LDAP Integration WordPress plugin before 4.1.10 stores sensitive LDAP logs in a buffer file when an administrator wants to export said logs. Unfortunately, this log file is never removed, and remains accessible to any users knowing the URL to do so.
- Last updated date:
- 10/20/2023
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 10/20/2023
- Reference url to background
https://wpscan.com/vulnerability/91f4e500-71f3-4ef6-9cc7-24a7c12a5748