Lucene search

K
patchstackN/APATCHSTACK:597734722ABF190CBCF0201B1F73CBDC
HistorySep 11, 2013 - 12:00 a.m.

WordPress <= 3.6.0 - Cross Site Scripting #2

2013-09-1100:00:00
N/A
patchstack.com
11

EPSS

0.002

Percentile

61.9%

Because of this vulnerability, remote authenticated users can conduct cross-site scripting attacks via a crafted file, that is related to the get_allowed_mime_types function in wp-includes/functions.php.

Solution

           Update WordPress.

EPSS

0.002

Percentile

61.9%