疑似Oday
The Wordfence Security plugin for WordPress stores configuration files in the /wp-content/wflogs/ directory. These files may be accessible without authentication and can expose sensitive configuration data, firewall rules, attack logs, and internal paths.
id: wordfence-rules-disclosure
info:
name: WordPress Wordfence - Rules File Disclosure
author:
...