Oval Definition:oval:com.ubuntu.xenial:def:20124421000
Revision Date:2012-09-14Version:1
Title:CVE-2012-4421 on Ubuntu 16.04 LTS (xenial) - medium.
Description:The create_post function in wp-includes/class-wp-atom-server.php in WordPress before 3.4.2 does not perform a capability check, which allows remote authenticated users to bypass intended access restrictions and publish new posts by leveraging the Contributor role and using the Atom Publishing Protocol (aka AtomPub) feature.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-4421
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND NOT While related to the CVE in some way, the 'wordpress' package in xenial is not affected (note: '3.4.2+dfsg-1').
  • BACK