Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/,…
mitre·CWE-425·Published 2005-05-20