CVE-2014-4942
The EasyCart (wp-easycart) plugin before 2.0.6 for WordPress allows remote attackers to obtain configuration information via a direct request to inc/admin/phpinfo.php, which calls the phpinfo function.
Date published : 2014-07-11
http://codevigilant.com/disclosure/wp-plugin-wp-easycart-information-disclosure/