Lucene search

K
cvelistMitreCVELIST:CVE-2010-5294
HistoryJan 21, 2014 - 1:00 a.m.

CVE-2010-5294

2014-01-2101:00:00
mitre
www.cve.org
3
cross-site scripting
wordpress
version 3.0.2
ftp
ssh

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

46.8%

Multiple cross-site scripting (XSS) vulnerabilities in the request_filesystem_credentials function in wp-admin/includes/file.php in WordPress before 3.0.2 allow remote servers to inject arbitrary web script or HTML by providing a crafted error message for a (1) FTP or (2) SSH connection attempt.

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

46.8%