Логотип exploitDog
bind:CVE-2017-1000600
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-1000600

Количество 4

Количество 4

ubuntu логотип

CVE-2017-1000600

почти 7 лет назад

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

CVSS3: 8.8
EPSS: Средний
nvd логотип

CVE-2017-1000600

почти 7 лет назад

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

CVSS3: 8.8
EPSS: Средний
debian логотип

CVE-2017-1000600

почти 7 лет назад

WordPress version <4.9 contains a CWE-20 Input Validation vulnerabilit ...

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-38pv-q5j7-w3w9

около 3 лет назад

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-1000600

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

CVSS3: 8.8
22%
Средний
почти 7 лет назад
nvd логотип
CVE-2017-1000600

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

CVSS3: 8.8
22%
Средний
почти 7 лет назад
debian логотип
CVE-2017-1000600

WordPress version <4.9 contains a CWE-20 Input Validation vulnerabilit ...

CVSS3: 8.8
22%
Средний
почти 7 лет назад
github логотип
GHSA-38pv-q5j7-w3w9

WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9

CVSS3: 8.8
22%
Средний
около 3 лет назад

Уязвимостей на страницу