Lucene search

K
cveMitreCVE-2006-4028
HistoryAug 09, 2006 - 8:04 p.m.

CVE-2006-4028

2006-08-0920:04:00
mitre
web.nvd.nist.gov
29
wordpress
version 2.0.4
vulnerabilities
remote attack vectors
user registration

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.017

Percentile

87.7%

Multiple unspecified vulnerabilities in WordPress before 2.0.4 have unknown impact and remote attack vectors. NOTE: due to lack of details, it is not clear how these issues are different from CVE-2006-3389 and CVE-2006-3390, although it is likely that 2.0.4 addresses an unspecified issue related to “Anyone can register” functionality (user registration for guests).

Affected configurations

Nvd
Node
wordpresswordpressMatch2.0
OR
wordpresswordpressMatch2.0.1
OR
wordpresswordpressMatch2.0.2
OR
wordpresswordpressMatch2.0.3
VendorProductVersionCPE
wordpresswordpress2.0cpe:2.3:a:wordpress:wordpress:2.0:*:*:*:*:*:*:*
wordpresswordpress2.0.1cpe:2.3:a:wordpress:wordpress:2.0.1:*:*:*:*:*:*:*
wordpresswordpress2.0.2cpe:2.3:a:wordpress:wordpress:2.0.2:*:*:*:*:*:*:*
wordpresswordpress2.0.3cpe:2.3:a:wordpress:wordpress:2.0.3:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

Low

EPSS

0.017

Percentile

87.7%