Oval Definition:oval:com.ubuntu.precise:def:20124421000
Revision Date:2012-09-14Version:1
Title:CVE-2012-4421 on Ubuntu 12.04 LTS (precise) - medium.
Description:The create_post function in wp-includes/class-wp-atom-server.php in WordPress before 3.4.2 does not perform a capability check, which allows remote authenticated users to bypass intended access restrictions and publish new posts by leveraging the Contributor role and using the Atom Publishing Protocol (aka AtomPub) feature.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-4421
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The vulnerability of the 'wordpress' package in precise is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK