Логотип exploitDog
bind:CVE-2018-1000773
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1000773

Количество 4

Количество 4

ubuntu логотип

CVE-2018-1000773

почти 7 лет назад

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time.

CVSS3: 8.8
EPSS: Средний
nvd логотип

CVE-2018-1000773

почти 7 лет назад

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time.

CVSS3: 8.8
EPSS: Средний
debian логотип

CVE-2018-1000773

почти 7 лет назад

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation ...

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-25jw-j5g7-jrcc

около 3 лет назад

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time.

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-1000773

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time.

CVSS3: 8.8
28%
Средний
почти 7 лет назад
nvd логотип
CVE-2018-1000773

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time.

CVSS3: 8.8
28%
Средний
почти 7 лет назад
debian логотип
CVE-2018-1000773

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation ...

CVSS3: 8.8
28%
Средний
почти 7 лет назад
github логотип
GHSA-25jw-j5g7-jrcc

WordPress version 4.9.8 and earlier contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution due to an incomplete fix for CVE-2017-1000600. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time.

CVSS3: 8.8
28%
Средний
около 3 лет назад

Уязвимостей на страницу