cleantalk
Vulnerabilities and Security Researches

WPS Hide Login, 27b71205a22e1507d20c83e4e13c08d4aa83aae8

Application

WPS Hide Login

Published on
Jan 27, 2020
Research Description
WPS Hide Login [wps-hide-login] < 1.5.5 WPS Hide Login <= 1.5.4.2 - Hidden Login Page Location Disclosure The WPS Hide Login plugin for WordPress is vulnerable to login page disclosure even when the settings of the plugin are set to hide the login page making it possible for unauthenticated attackers to brute force credentials on sites in versions up to, and including, 1.5.4.2.
Affected versions
max 1.5.5.
Status
vulnerable