Exploit WordPress Core 2.3.1 - Unauthorized Post Access

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
30889
Проверка EDB
  1. Пройдено
Автор
MICHAEL BROOKS
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
null
Дата публикации
2007-12-15
Код:
source: https://www.securityfocus.com/bid/26885/info

WordPress is prone to a vulnerability that lets unauthorized users read draft posts before they have been published.

This issue affects WordPress 2.3.1; other versions may also be affected.

NOTE: This BID is being reinstated because further investigation reveals that the application is vulnerable. The exploit URI supplied in the initial report was not sufficient to trigger the issue, which led to the vulnerability claim being refuted. However, follow-up information from the reporter included a URI that does trigger the issue.

http://www.example.com/wordpress/index.php/wp-admin/
 
Источник
www.exploit-db.com

Похожие темы