Lucene search

K
cveMitreCVE-2008-6767
HistoryApr 28, 2009 - 4:30 p.m.

CVE-2008-6767

2009-04-2816:30:03
mitre
web.nvd.nist.gov
45
4
cve
2008
6767
wordpress
upgrade
remote attackers
denial of service
outage
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0.006

Percentile

79.4%

wp-admin/upgrade.php in WordPress, probably 2.6.x, allows remote attackers to upgrade the application, and possibly cause a denial of service (application outage), via a direct request.

Affected configurations

Nvd
Node
wordpresswordpressMatch2.6
VendorProductVersionCPE
wordpresswordpress2.6cpe:2.3:a:wordpress:wordpress:2.6:*:*:*:*:*:*:*

Social References

More

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.5

Confidence

Low

EPSS

0.006

Percentile

79.4%