Lucene search

K
cvelistMitreCVELIST:CVE-2014-9033
HistoryNov 25, 2014 - 11:00 p.m.

CVE-2014-9033

2014-11-2523:00:00
mitre
www.cve.org

6.9 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.0%

Cross-site request forgery (CSRF) vulnerability in wp-login.php in WordPress 3.7.4, 3.8.4, 3.9.2, and 4.0 allows remote attackers to hijack the authentication of arbitrary users for requests that reset passwords.

6.9 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.0%