Описание
wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3.3.3 does not properly restrict excerpt-view access, which allows remote authenticated users to obtain sensitive information by visiting a draft.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | |
esm-apps/xenial | not-affected | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected] |
lucid | ignored | end of life |
precise | ignored | end of life |
precise/esm | DNE | precise was needed |
quantal | not-affected | |
raring | not-affected | |
saucy | not-affected | |
trusty | not-affected |
Показывать по
EPSS
4 Medium
CVSS2
Связанные уязвимости
wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3.3.3 does not properly restrict excerpt-view access, which allows remote authenticated users to obtain sensitive information by visiting a draft.
wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3. ...
wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3.3.3 does not properly restrict excerpt-view access, which allows remote authenticated users to obtain sensitive information by visiting a draft.
EPSS
4 Medium
CVSS2