[Plugin: WordPress File Monitor Plus] Data files browseable
-
Hi, first of all thanks for this great plugin!
When using the data file option (instead of database), I noticed that the data is browseable, which constitutes a big security issue as it exposes the paths of all monitored files.
Just browse to:
https://<domain.com>/wp-content/plugins/wordpress-file-monitor-plus/data/.sc_wpfmp_scan_dataI believe that a properly-configured .htaccess in /data/ should fix this problem.
Hope this is useful!
https://www.ads-software.com/extend/plugins/wordpress-file-monitor-plus/
Viewing 3 replies - 1 through 3 (of 3 total)
Viewing 3 replies - 1 through 3 (of 3 total)
- The topic ‘[Plugin: WordPress File Monitor Plus] Data files browseable’ is closed to new replies.