Information Disclosure Vulnerability in FV Flowplayer Video Player Plugin for WordPress

Information Disclosure Vulnerability in FV Flowplayer Video Player Plugin for WordPress

CVE-2019-14800 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The FV Flowplayer Video Player plugin before 7.3.15.727 for WordPress allows guests to obtain the email subscription list in CSV format via the wp-admin/admin-post.php?page=fvplayer&fv-email-export=1 URI.

Learn more about our Wordpress Pen Testing.