Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-5106

Опубликовано: 14 сент. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.5

Описание

The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 does not properly check capabilities, which allows remote authenticated users to bypass intended access restrictions, and publish, edit, or delete posts, by leveraging the Author or Contributor role.

РелизСтатусПримечание
devel

not-affected

hardy

ignored

end of life
lucid

ignored

end of life
natty

not-affected

3.0.5+dfsg-1ubuntu1
oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

upstream

released

3.0.3

Показывать по

EPSS

Процентиль: 57%
0.00358
Низкий

6.5 Medium

CVSS2

Связанные уязвимости

nvd
почти 13 лет назад

The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 does not properly check capabilities, which allows remote authenticated users to bypass intended access restrictions, and publish, edit, or delete posts, by leveraging the Author or Contributor role.

debian
почти 13 лет назад

The XML-RPC remote publishing interface in xmlrpc.php in WordPress bef ...

github
около 3 лет назад

The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 does not properly check capabilities, which allows remote authenticated users to bypass intended access restrictions, and publish, edit, or delete posts, by leveraging the Author or Contributor role.

EPSS

Процентиль: 57%
0.00358
Низкий

6.5 Medium

CVSS2