cleantalk
Vulnerabilities and Security Researches

FV Flowplayer Video Player, CVE-2019-14800

CVE, Research URL

CVE-2019-14800

Published on
Aug 15, 2019
Research Description
The FV Flowplayer Video Player plugin before 7.3.15.727 for WordPress allows guests to obtain the email subscription list in CSV format via the wp-admin/admin-post.php?page=fvplayer&fv-email-export=1 URI.
Affected versions
max 7.3.15.727.
Status
vulnerable