User Information Disclosure via REST API

Disclosed: 2017-02-11 22:09:05 By xploitt To nextcloud
Unknown
Vulnerability Details
Hello, I found out that you are using WP 4.6.2 on your domain which is outdated. >https://nextcloud.com/readme.html _Description_:- WordPress versions 4.7 and earlier are affected by multiple security issues. Kindly check https://wpvulndb.com/wordpresses/462 for the vulnerabilities and in detailed Proof of concept . **Fix:** Upgrade WORDPRESS to 4.7.1 >https://nextcloud.com/readme.html _Refer_:- >https://wpvulndb.com/wordpresses/462 I hope this is fixed soon. _Regards_, Raunak
Actions
View on HackerOne
Report Stats
  • Report ID: 197877
  • State: Closed
  • Substate: resolved
  • Upvotes: 8
Share this report