Description
WordPress Plugin Acumbamail is prone to an information disclosure vulnerability. Attackers can exploit this issue by sniffing network traffic or via a Man-in-the-Middle (MitM) attack to obtain sensitive information that may help in launching further attacks. WordPress Plugin Acumbamail version 1.0.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.4.1 or latest
References
Related Vulnerabilities
Drupal Core 6.x Security Bypass (6.0 - 6.29)
Oracle Database Server Other Vulnerability (CVE-2001-0832)
Oracle Application Server CVE-2008-2609 Vulnerability (CVE-2008-2609)
WordPress Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-7233)
Magento Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2212)