Description
WordPress Plugin AccessAlly is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin AccessAlly version 3.5.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.5.7 or latest
References
Related Vulnerabilities
WordPress Plugin RestroPress-Online Food Ordering System Security Bypass (2.8.3)
Apache HTTP Server Insertion of Sensitive Information into Log File Vulnerability (CVE-2001-1556)
Joomla! Core 3.x.x Security Bypass (3.8.8 - 3.9.16)
WordPress Plugin Free Live Chat Support Cross-Site Request Forgery (1.0.11)