Lucene search

K
patchstackN/APATCHSTACK:1090D28EB1E7A0CDF2D5555DC5C88015
HistoryAug 02, 2015 - 12:00 a.m.

WordPress <= 4.3.0 - BYPASS

2015-08-0200:00:00
N/A
patchstack.com
9

0.002 Low

EPSS

Percentile

54.8%

The vulnerability is in the XMLRPC subsystem, in wp-includes/class-wp-xmlrpc-server.php. It allows an authenticated user to bypass intended access restrictions via unspecified vectors.

Solution

           Update WordPress. 
CPENameOperatorVersion
wordpressle4.3.0