Security Advisory
CVE-2014-8701
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Wonder CMS 2014 allows remote attackers to obtain sensitive information by viewing /files/password, which reveals the unsalted MD5 hashed password.