Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-6817

Опубликовано: 12 мар. 2017
Источник: debian
EPSS Низкий

Описание

In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wordpressfixed4.7.3+dfsg-1package
wordpressnot-affectedwheezypackage

Примечания

  • https://wordpress.org/news/2017/03/wordpress-4-7-3-security-and-maintenance-release/

  • https://github.com/WordPress/WordPress/commit/419c8d97ce8df7d5004ee0b566bc5e095f0a6ca8

EPSS

Процентиль: 85%
0.02608
Низкий

Связанные уязвимости

CVSS3: 5.4
ubuntu
больше 8 лет назад

In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.

CVSS3: 5.4
nvd
больше 8 лет назад

In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.

CVSS3: 5.4
github
около 3 лет назад

In WordPress before 4.7.3 (wp-includes/embed.php), there is authenticated Cross-Site Scripting (XSS) in YouTube URL Embeds.

EPSS

Процентиль: 85%
0.02608
Низкий