Vulnerability Name: | CCN-72708 | ||||||
Published: | 2012-01-24 | ||||||
Updated: | 2012-01-24 | ||||||
Summary: | WordPress could allow a remote attacker to execute arbitrary code on the system, caused by an error in the 404.php script. An attacker could exploit this vulnerability to inject and execute arbitrary code on the system. | ||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||
CVSS v2 Severity: | 7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 6.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:U/RC:UR)
| ||||||
Vulnerability Consequences: | Gain Access | ||||||
References: | Source: CCN Type: WordPress Web Site WordPress Blog Tool, Publishing Platform, and CMS Source: XF Type: UNKNOWN wordpress-404-code-execution(72708) Source: CCN Type: TWSL2012-002 Multiple Vulnerabilities in WordPress | ||||||
Vulnerable Configuration: | Configuration CCN 1:![]() | ||||||
BACK |