Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

WordPress

WordPressсвободно распространяемая система управления содержимым сайта с открытым исходным кодом.

Релизный цикл, информация об уязвимостях

Продукт: WordPress
Вендор: Wordpress

График релизов

6.56.66.76.86.97.02024202520262027

Недавние уязвимости WordPress

Количество 1 912

debian логотип

CVE-2006-4028

почти 20 лет назад

Multiple unspecified vulnerabilities in WordPress before 2.0.4 have un ...

CVSS2: 10
EPSS: Низкий
ubuntu логотип

CVE-2006-4028

почти 20 лет назад

Multiple unspecified vulnerabilities in WordPress before 2.0.4 have unknown impact and remote attack vectors. NOTE: due to lack of details, it is not clear how these issues are different from CVE-2006-3389 and CVE-2006-3390, although it is likely that 2.0.4 addresses an unspecified issue related to "Anyone can register" functionality (user registration for guests).

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2006-3390

около 20 лет назад

WordPress 2.0.3 allows remote attackers to obtain the installation path via a direct request to various files, such as those in the (1) wp-admin, (2) wp-content, and (3) wp-includes directories, possibly due to uninitialized variables.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2006-3389

около 20 лет назад

index.php in WordPress 2.0.3 allows remote attackers to obtain sensitive information, such as SQL table prefixes, via an invalid paged parameter, which displays the information in an SQL error message. NOTE: this issue has been disputed by a third party who states that the issue does not leak any target-specific information.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2006-3390

около 20 лет назад

WordPress 2.0.3 allows remote attackers to obtain the installation pat ...

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2006-3389

около 20 лет назад

index.php in WordPress 2.0.3 allows remote attackers to obtain sensiti ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2006-3390

около 20 лет назад

WordPress 2.0.3 allows remote attackers to obtain the installation path via a direct request to various files, such as those in the (1) wp-admin, (2) wp-content, and (3) wp-includes directories, possibly due to uninitialized variables.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2006-3389

около 20 лет назад

index.php in WordPress 2.0.3 allows remote attackers to obtain sensitive information, such as SQL table prefixes, via an invalid paged parameter, which displays the information in an SQL error message. NOTE: this issue has been disputed by a third party who states that the issue does not leak any target-specific information.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2006-2702

около 20 лет назад

vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows remote attackers to spoof their IP address via a PC_REMOTE_ADDR HTTP header, which vars.php uses to redefine $_SERVER['REMOTE_ADDR'].

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2006-2702

около 20 лет назад

vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows ...

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2006-4028

Multiple unspecified vulnerabilities in WordPress before 2.0.4 have un ...

CVSS2: 10
4%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2006-4028

Multiple unspecified vulnerabilities in WordPress before 2.0.4 have unknown impact and remote attack vectors. NOTE: due to lack of details, it is not clear how these issues are different from CVE-2006-3389 and CVE-2006-3390, although it is likely that 2.0.4 addresses an unspecified issue related to "Anyone can register" functionality (user registration for guests).

CVSS2: 10
4%
Низкий
почти 20 лет назад
nvd логотип
CVE-2006-3390

WordPress 2.0.3 allows remote attackers to obtain the installation path via a direct request to various files, such as those in the (1) wp-admin, (2) wp-content, and (3) wp-includes directories, possibly due to uninitialized variables.

CVSS2: 5
3%
Низкий
около 20 лет назад
nvd логотип
CVE-2006-3389

index.php in WordPress 2.0.3 allows remote attackers to obtain sensitive information, such as SQL table prefixes, via an invalid paged parameter, which displays the information in an SQL error message. NOTE: this issue has been disputed by a third party who states that the issue does not leak any target-specific information.

CVSS2: 5
3%
Низкий
около 20 лет назад
debian логотип
CVE-2006-3390

WordPress 2.0.3 allows remote attackers to obtain the installation pat ...

CVSS2: 5
3%
Низкий
около 20 лет назад
debian логотип
CVE-2006-3389

index.php in WordPress 2.0.3 allows remote attackers to obtain sensiti ...

CVSS2: 5
3%
Низкий
около 20 лет назад
ubuntu логотип
CVE-2006-3390

WordPress 2.0.3 allows remote attackers to obtain the installation path via a direct request to various files, such as those in the (1) wp-admin, (2) wp-content, and (3) wp-includes directories, possibly due to uninitialized variables.

CVSS2: 5
3%
Низкий
около 20 лет назад
ubuntu логотип
CVE-2006-3389

index.php in WordPress 2.0.3 allows remote attackers to obtain sensitive information, such as SQL table prefixes, via an invalid paged parameter, which displays the information in an SQL error message. NOTE: this issue has been disputed by a third party who states that the issue does not leak any target-specific information.

CVSS2: 5
3%
Низкий
около 20 лет назад
nvd логотип
CVE-2006-2702

vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows remote attackers to spoof their IP address via a PC_REMOTE_ADDR HTTP header, which vars.php uses to redefine $_SERVER['REMOTE_ADDR'].

CVSS2: 5
3%
Низкий
около 20 лет назад
debian логотип
CVE-2006-2702

vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows ...

CVSS2: 5
3%
Низкий
около 20 лет назад

Уязвимостей на страницу


Поделиться