Check Point Reference: | CPAI-2013-3508 |
Date Published: | 26 Nov 2013 |
Severity: | Medium |
Last Updated: | Saturday 04 January, 2025 |
Source: | CVE-2012-6077 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | W3 Total Cache Plugin for Wordpress |
Vulnerability Description | An information disclosure vulnerability has been reported in W3 Total Cache Plugin for Wordpress. |
Vulnerability Details | The vulnerability is due to the storage location of the database cache files. A remote attacker could trigger this flaw by sending a direct request for a cache file. Successful exploitation may result in the disclosure of sensitive password hash information. |
This protection will detect and block attempts to exploit this vulnerability.
SmartView Tracker will log the following entries:
Attack Name: DNS Enforcement Violation
Attack Information: W3-Total-Cache Wordpress-plugin Username and Hash Extract