Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-2213

Опубликовано: 09 нояб. 2015
Источник: nvd
CVSS2: 7.5
EPSS Средний

Описание

SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is mishandled after retrieval from the trash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*
Версия до 4.2.3 (включая)

EPSS

Процентиль: 96%
0.23735
Средний

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

ubuntu
больше 9 лет назад

SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is mishandled after retrieval from the trash.

debian
больше 9 лет назад

SQL injection vulnerability in the wp_untrash_post_comments function i ...

github
около 3 лет назад

SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is mishandled after retrieval from the trash.

EPSS

Процентиль: 96%
0.23735
Средний

7.5 High

CVSS2

Дефекты

CWE-89