Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-5203
HistoryAug 18, 2014 - 12:00 a.m.

CVE-2014-5203

2014-08-1800:00:00
ubuntu.com
ubuntu.com
11

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.072

Percentile

94.0%

wp-includes/class-wp-customize-widgets.php in the widget implementation in
WordPress 3.9.x before 3.9.2 might allow remote attackers to execute
arbitrary code via crafted serialized data.

Bugs

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.072

Percentile

94.0%