Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8cg5-rjxh-5v62

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WordPress before 3.0.1, when a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change.

WordPress before 3.0.1, when a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change.

EPSS

Процентиль: 46%
0.00231
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

WordPress before 3.0.1, when a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change.

nvd
больше 11 лет назад

WordPress before 3.0.1, when a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change.

debian
больше 11 лет назад

WordPress before 3.0.1, when a Multisite installation is used, permane ...

EPSS

Процентиль: 46%
0.00231
Низкий