Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1893

Опубликовано: 09 апр. 2007
Источник: nvd
CVSS2: 4.9
EPSS Низкий

Описание

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functionality, which can be used to "publish a previously saved post."

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*
Версия до 2.1.2 (включая)

EPSS

Процентиль: 39%
0.0017
Низкий

4.9 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
около 18 лет назад

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functionality, which can be used to "publish a previously saved post."

debian
около 18 лет назад

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows r ...

github
около 3 лет назад

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functionality, which can be used to "publish a previously saved post."

EPSS

Процентиль: 39%
0.0017
Низкий

4.9 Medium

CVSS2

Дефекты

CWE-264