Логотип exploitDog
bind:CVE-2016-6896
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-6896

Количество 4

Количество 4

ubuntu логотип

CVE-2016-6896

больше 8 лет назад

Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress 4.5.3 allows remote authenticated users to cause a denial of service or read certain text files via a .. (dot dot) in the plugin parameter to wp-admin/admin-ajax.php, as demonstrated by /dev/random read operations that deplete the entropy pool.

CVSS3: 7.1
EPSS: Средний
nvd логотип

CVE-2016-6896

больше 8 лет назад

Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress 4.5.3 allows remote authenticated users to cause a denial of service or read certain text files via a .. (dot dot) in the plugin parameter to wp-admin/admin-ajax.php, as demonstrated by /dev/random read operations that deplete the entropy pool.

CVSS3: 7.1
EPSS: Средний
debian логотип

CVE-2016-6896

больше 8 лет назад

Directory traversal vulnerability in the wp_ajax_update_plugin functio ...

CVSS3: 7.1
EPSS: Средний
github логотип

GHSA-7r4r-qf37-vqqq

около 3 лет назад

Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress 4.5.3 allows remote authenticated users to cause a denial of service or read certain text files via a .. (dot dot) in the plugin parameter to wp-admin/admin-ajax.php, as demonstrated by /dev/random read operations that deplete the entropy pool.

CVSS3: 7.1
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-6896

Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress 4.5.3 allows remote authenticated users to cause a denial of service or read certain text files via a .. (dot dot) in the plugin parameter to wp-admin/admin-ajax.php, as demonstrated by /dev/random read operations that deplete the entropy pool.

CVSS3: 7.1
24%
Средний
больше 8 лет назад
nvd логотип
CVE-2016-6896

Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress 4.5.3 allows remote authenticated users to cause a denial of service or read certain text files via a .. (dot dot) in the plugin parameter to wp-admin/admin-ajax.php, as demonstrated by /dev/random read operations that deplete the entropy pool.

CVSS3: 7.1
24%
Средний
больше 8 лет назад
debian логотип
CVE-2016-6896

Directory traversal vulnerability in the wp_ajax_update_plugin functio ...

CVSS3: 7.1
24%
Средний
больше 8 лет назад
github логотип
GHSA-7r4r-qf37-vqqq

Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress 4.5.3 allows remote authenticated users to cause a denial of service or read certain text files via a .. (dot dot) in the plugin parameter to wp-admin/admin-ajax.php, as demonstrated by /dev/random read operations that deplete the entropy pool.

CVSS3: 7.1
24%
Средний
около 3 лет назад

Уязвимостей на страницу