Логотип exploitDog
product: "wordpress"
Консоль
Логотип exploitDog

exploitDog

product: "wordpress"
WordPress

WordPressсвободно распространяемая система управления содержимым сайта с открытым исходным кодом.

Релизный цикл, информация об уязвимостях

Продукт: WordPress
Вендор: Wordpress

График релизов

6.46.56.66.76.86.920232024202520262027

Недавние уязвимости WordPress

Количество 1 906

ubuntu логотип

CVE-2005-2110

больше 20 лет назад

WordPress 1.5.1.2 and earlier allows remote attackers to obtain sensitive information via (1) a direct request to menu-header.php or a "1" value in the feed parameter to (2) wp-atom.php, (3) wp-rss.php, or (4) wp-rss2.php, which reveal the path in an error message. NOTE: vector [1] was later reported to also affect WordPress 2.0.1.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-1810

больше 20 лет назад

SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-1810

больше 20 лет назад

SQL injection vulnerability in template-functions-category.php in Word ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-1810

больше 20 лет назад

SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2005-1688

больше 20 лет назад

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2005-1687

больше 20 лет назад

SQL injection vulnerability in wp-trackback.php in Wordpress 1.5 and earlier allows remote attackers to execute arbitrary SQL commands via the tb_id parameter.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-1688

больше 20 лет назад

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive ...

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2005-1687

больше 20 лет назад

SQL injection vulnerability in wp-trackback.php in Wordpress 1.5 and e ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-1688

больше 20 лет назад

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2005-1102

почти 21 год назад

Multiple cross-site scripting (XSS) vulnerabilities in template-functions-post.php in WordPress 1.5 and earlier allow remote attackers to execute arbitrary commands via the (1) content or (2) title of the post.

CVSS2: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2005-2110

WordPress 1.5.1.2 and earlier allows remote attackers to obtain sensitive information via (1) a direct request to menu-header.php or a "1" value in the feed parameter to (2) wp-atom.php, (3) wp-rss.php, or (4) wp-rss2.php, which reveal the path in an error message. NOTE: vector [1] was later reported to also affect WordPress 2.0.1.

CVSS2: 5
1%
Низкий
больше 20 лет назад
nvd логотип
CVE-2005-1810

SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.

CVSS2: 7.5
2%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-1810

SQL injection vulnerability in template-functions-category.php in Word ...

CVSS2: 7.5
2%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2005-1810

SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.

CVSS2: 7.5
2%
Низкий
больше 20 лет назад
nvd логотип
CVE-2005-1688

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message.

CVSS3: 5.3
1%
Низкий
больше 20 лет назад
nvd логотип
CVE-2005-1687

SQL injection vulnerability in wp-trackback.php in Wordpress 1.5 and earlier allows remote attackers to execute arbitrary SQL commands via the tb_id parameter.

CVSS2: 7.5
1%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-1688

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive ...

CVSS3: 5.3
1%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-1687

SQL injection vulnerability in wp-trackback.php in Wordpress 1.5 and e ...

CVSS2: 7.5
1%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2005-1688

Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message.

CVSS3: 5.3
1%
Низкий
больше 20 лет назад
nvd логотип
CVE-2005-1102

Multiple cross-site scripting (XSS) vulnerabilities in template-functions-post.php in WordPress 1.5 and earlier allow remote attackers to execute arbitrary commands via the (1) content or (2) title of the post.

CVSS2: 6.8
1%
Низкий
почти 21 год назад

Уязвимостей на страницу


Поделиться