Description
WordPress Plugin Acumbamail is prone to an information disclosure vulnerability. Attackers can exploit this issue by sniffing network traffic or via a Man-in-the-Middle (MitM) attack to obtain sensitive information that may help in launching further attacks. WordPress Plugin Acumbamail version 1.0.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.4.1 or latest
References
Related Vulnerabilities
WordPress Plugin PICA Photo Gallery 'picaPhotosResize.php' Arbitrary File Upload (1.0)
WordPress Plugin Fusion:Extension-Gallery Multiple Unspecified Vulnerabilities (1.0.4)
WordPress Plugin Giveaway Boost PHP Object Injection (2.1.2)
WordPress Plugin cdnvote 'cdnvote-post.php' Multiple SQL Injection Vulnerabilities (0.4.1)