Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1893

Опубликовано: 09 апр. 2007
Источник: nvd
CVSS2: 4.9
EPSS Низкий

Описание

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functionality, which can be used to "publish a previously saved post."

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*
Версия до 2.1.2 (включая)

EPSS

Процентиль: 48%
0.00252
Низкий

4.9 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
почти 19 лет назад

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functionality, which can be used to "publish a previously saved post."

debian
почти 19 лет назад

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows r ...

github
почти 4 года назад

xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functionality, which can be used to "publish a previously saved post."

EPSS

Процентиль: 48%
0.00252
Низкий

4.9 Medium

CVSS2

Дефекты

CWE-264