Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
wordpress wordpress 3.5.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-2173
wp-includes/class-phpass.php in WordPress 3.5.1, when a password-protected post exists, allows remote attackers to cause a denial of service (CPU consumption) via a crafted value of a certain wp-postpass cookie....
Wordpress Wordpress 3.5.1
NA
CVE-2014-5240
Cross-site scripting (XSS) vulnerability in wp-includes/pluggable.php in WordPress before 3.9.2, when Multisite is enabled, allows remote authenticated administrators to inject arbitrary web script or HTML, and obtain Super Admin privileges, via a crafted avatar URL....
Wordpress Wordpress 3.0.5
Wordpress Wordpress 3.0.6
Wordpress Wordpress 3.1
Wordpress Wordpress 3.1.1
Wordpress Wordpress 3.5.0
Wordpress Wordpress 3.5.1
Wordpress Wordpress 3.6
Wordpress Wordpress 3.6.1
Wordpress Wordpress 3.0.1
Wordpress Wordpress 3.0.3
Wordpress Wordpress 3.1.3
Wordpress Wordpress 3.2
Wordpress Wordpress 3.3.2
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.7
Wordpress Wordpress 3.8
Wordpress Wordpress 3.0
Wordpress Wordpress 3.2.1
Wordpress Wordpress 3.3
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.9.0
Wordpress Wordpress
Wordpress Wordpress 3.0.2
Wordpress Wordpress 3.0.4
Wordpress Wordpress 3.1.2
Wordpress Wordpress 3.1.4
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.7.1
Wordpress Wordpress 3.8.1
Debian Debian Linux 7.0
NA
CVE-2013-0235
The XMLRPC API in WordPress before 3.5.1 allows remote attackers to send HTTP requests to intranet servers, and conduct port-scanning attacks, by specifying a crafted source URL for a pingback, related to a Server-Side Request Forgery (SSRF) issue....
Wordpress Wordpress 2.6.2
Wordpress Wordpress 2.1.3
Wordpress Wordpress 2.2.3
Wordpress Wordpress 2.3
Wordpress Wordpress 2.2.2
Wordpress Wordpress 2.3.2
Wordpress Wordpress 2.0.1
Wordpress Wordpress 2.0.10
Wordpress Wordpress 2.6.5
Wordpress Wordpress 2.5
Wordpress Wordpress 2.8.3
Wordpress Wordpress 2.7.1
Wordpress Wordpress 2.8.5
Wordpress Wordpress 1.5.1
Wordpress Wordpress 1.2.1
Wordpress Wordpress 1.2.2
Wordpress Wordpress 1.0.2
Wordpress Wordpress
Wordpress Wordpress 3.3.2
Wordpress Wordpress 2.0.11
Wordpress Wordpress 2.0.8
Wordpress Wordpress 2.0.9
Wordpress Wordpress 2.6.1
Wordpress Wordpress 2.3.1
Wordpress Wordpress 2.0.4
Wordpress Wordpress 2.0.6
Wordpress Wordpress 2.9.2
Wordpress Wordpress 2.9
Wordpress Wordpress 2.9.1.1
Wordpress Wordpress 2.8.1
Wordpress Wordpress 1.6.2
Wordpress Wordpress 1.5
Wordpress Wordpress 1.2
Wordpress Wordpress 1.0.1
Wordpress Wordpress 1.3
Wordpress Wordpress 0.71
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.3
Wordpress Wordpress 3.3.1
Wordpress Wordpress 2.2.1
Wordpress Wordpress 2.3.3
Wordpress Wordpress 2.8.6
Wordpress Wordpress 2.6.3
Wordpress Wordpress 2.8.4
Wordpress Wordpress 2.0.7
Wordpress Wordpress 2.1
Wordpress Wordpress 2.1.1
Wordpress Wordpress 2.1.2
Wordpress Wordpress 2.8.2
Wordpress Wordpress 1.5.1.1
Wordpress Wordpress 1.5.1.2
Wordpress Wordpress 1.2.5
Wordpress Wordpress 1.2.3
Wordpress Wordpress 1.2.4
Wordpress Wordpress 1.1.1
Wordpress Wordpress 1.3.3
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.3.3
Wordpress Wordpress 2.5.1
Wordpress Wordpress 2.8
Wordpress Wordpress 2.2
Wordpress Wordpress 2.6
Wordpress Wordpress 2.0
Wordpress Wordpress 2.0.2
Wordpress Wordpress 2.0.5
Wordpress Wordpress 2.7
Wordpress Wordpress 2.9.1
Wordpress Wordpress 2.8.5.1
Wordpress Wordpress 2.8.5.2
Wordpress Wordpress 1.5.1.3
Wordpress Wordpress 1.5.2
Wordpress Wordpress 1.0
Wordpress Wordpress 1.3.2
1 Metasploit module available
1 Github repository available
NA
CVE-2013-0236
Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 3.5.1 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) gallery shortcodes or (2) the content of a post....
Wordpress Wordpress
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.4.0
Wordpress Wordpress 2.2
Wordpress Wordpress 2.2.1
Wordpress Wordpress 2.3.3
Wordpress Wordpress 2.8.6
Wordpress Wordpress 2.0.5
Wordpress Wordpress 2.0.6
Wordpress Wordpress 2.0.7
Wordpress Wordpress 2.1
Wordpress Wordpress 2.8.1
Wordpress Wordpress 2.8.5.2
Wordpress Wordpress 2.8.4
Wordpress Wordpress 2.8.2
Wordpress Wordpress 1.2.5
Wordpress Wordpress 1.2.3
Wordpress Wordpress 1.2.4
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.3.2
Wordpress Wordpress 2.2.3
Wordpress Wordpress 2.0.8
Wordpress Wordpress 2.0.9
Wordpress Wordpress 2.6.3
Wordpress Wordpress 2.6.1
Wordpress Wordpress 2.0.10
Wordpress Wordpress 2.0.4
Wordpress Wordpress 2.1.1
Wordpress Wordpress 2.9.2
Wordpress Wordpress 2.9
Wordpress Wordpress 2.7.1
Wordpress Wordpress 2.9.1.1
Wordpress Wordpress 1.5.1.2
Wordpress Wordpress 2.5.1
Wordpress Wordpress 2.0.11
Wordpress Wordpress 2.6.2
Wordpress Wordpress 2.1.3
Wordpress Wordpress 2.3.1
Wordpress Wordpress 2.0
Wordpress Wordpress 2.2.2
Wordpress Wordpress 2.3.2
Wordpress Wordpress 2.9.1
Wordpress Wordpress 2.6.5
Wordpress Wordpress 2.5
Wordpress Wordpress 2.8.3
Wordpress Wordpress 1.5.2
Wordpress Wordpress 1.5
Wordpress Wordpress 1.5.1
Wordpress Wordpress 1.2.1
Wordpress Wordpress 1.2.2
Wordpress Wordpress 0.71
Wordpress Wordpress 1.6.2
Wordpress Wordpress 1.2
Wordpress Wordpress 1.0.1
Wordpress Wordpress 1.1.1
Wordpress Wordpress 1.3
Wordpress Wordpress 3.3
Wordpress Wordpress 3.3.3
Wordpress Wordpress 2.3
Wordpress Wordpress 2.8
Wordpress Wordpress 2.6
Wordpress Wordpress 2.0.1
Wordpress Wordpress 2.0.2
Wordpress Wordpress 2.1.2
Wordpress Wordpress 2.7
Wordpress Wordpress 2.8.5
Wordpress Wordpress 2.8.5.1
Wordpress Wordpress 1.5.1.1
Wordpress Wordpress 1.5.1.3
Wordpress Wordpress 1.0.2
Wordpress Wordpress 1.0
Wordpress Wordpress 1.3.3
Wordpress Wordpress 1.3.2
NA
CVE-2014-0165
WordPress before 3.7.2 and 3.8.x before 3.8.2 allows remote authenticated users to publish posts by leveraging the Contributor role, related to wp-admin/includes/post.php and wp-admin/includes/class-wp-posts-list-table.php....
Wordpress Wordpress 3.7
Wordpress Wordpress
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.2
Wordpress Wordpress 3.0.4
Wordpress Wordpress 3.0.3
Wordpress Wordpress 2.9
Wordpress Wordpress 3.8
Wordpress Wordpress 3.8.1
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.1.4
Wordpress Wordpress 3.1.3
Wordpress Wordpress 3.0.2
Wordpress Wordpress 3.0.1
Wordpress Wordpress 2.8.5.2
Wordpress Wordpress 2.8.5.1
Wordpress Wordpress 3.6.1
Wordpress Wordpress 3.6
Wordpress Wordpress 3.3.2
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.1.2
Wordpress Wordpress 3.1.1
Wordpress Wordpress 3.1
Wordpress Wordpress 3.0
Wordpress Wordpress 2.9.2
Wordpress Wordpress 2.8.5
Wordpress Wordpress 2.8.4
Wordpress Wordpress 2.6.5
Wordpress Wordpress 2.6.3
Wordpress Wordpress 2.3.2
Wordpress Wordpress 2.3.1
Wordpress Wordpress 2.1.2
Wordpress Wordpress 2.1.1
Wordpress Wordpress 2.0.2
Wordpress Wordpress 2.0.11
Wordpress Wordpress 1.5.1.2
Wordpress Wordpress 1.5.1.1
Wordpress Wordpress 1.2.5
Wordpress Wordpress 1.2.4
Wordpress Wordpress 1.0
Wordpress Wordpress 0.71
Wordpress Wordpress 2.8.6
Wordpress Wordpress 2.8.2
Wordpress Wordpress 2.8.1
Wordpress Wordpress 2.6
Wordpress Wordpress 2.5.1
Wordpress Wordpress 2.2.2
Wordpress Wordpress 2.2.1
Wordpress Wordpress 2.0.8
Wordpress Wordpress 2.0.7
Wordpress Wordpress 2.0.6
Wordpress Wordpress 2.0
Wordpress Wordpress 1.6.2
Wordpress Wordpress 1.3.3
Wordpress Wordpress 1.3.2
Wordpress Wordpress 1.2.1
Wordpress Wordpress 1.2
Wordpress Wordpress 1.1.1
Wordpress Wordpress 2.8
Wordpress Wordpress 2.7.1
Wordpress Wordpress 2.7
Wordpress Wordpress 2.5
Wordpress Wordpress 2.3.3
Wordpress Wordpress 2.2
Wordpress Wordpress 2.1.3
Wordpress Wordpress 2.0.5
Wordpress Wordpress 2.0.4
Wordpress Wordpress 1.5.2
Wordpress Wordpress 1.5.1.3
Wordpress Wordpress 1.3
Wordpress Wordpress 1.0.2
Wordpress Wordpress 1.0.1
Wordpress Wordpress 3.5.1
Wordpress Wordpress 3.5.0
Wordpress Wordpress 3.3
Wordpress Wordpress 3.2.1
Wordpress Wordpress 3.0.6
Wordpress Wordpress 3.0.5
Wordpress Wordpress 2.9.1.1
Wordpress Wordpress 2.9.1
Wordpress Wordpress 2.8.3
Wordpress Wordpress 2.6.2
Wordpress Wordpress 2.6.1
Wordpress Wordpress 2.3
Wordpress Wordpress 2.2.3
Wordpress Wordpress 2.1
Wordpress Wordpress 2.0.9
Wordpress Wordpress 2.0.10
Wordpress Wordpress 2.0.1
Wordpress Wordpress 1.5.1
Wordpress Wordpress 1.5
Wordpress Wordpress 1.2.3
Wordpress Wordpress 1.2.2
NA
CVE-2013-0237
Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter....
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.3.2
Wordpress Wordpress 2.5.1
Wordpress Wordpress 2.0.11
Wordpress Wordpress 2.6.2
Wordpress Wordpress 2.6.1
Wordpress Wordpress 2.6
Wordpress Wordpress 2.3.1
Wordpress Wordpress 2.0
Wordpress Wordpress 2.7
Wordpress Wordpress 2.9
Wordpress Wordpress 2.9.1
Wordpress Wordpress 2.6.5
Wordpress Wordpress 1.6.2
Wordpress Wordpress 1.5.2
Wordpress Wordpress 1.5
Wordpress Wordpress 1.5.1
Wordpress Wordpress 1.3
Wordpress Wordpress 1.3.2
Wordpress Wordpress 0.71
Moxiecode Plupload
Wordpress Wordpress
Wordpress Wordpress 3.4.2
Wordpress Wordpress 2.8
Wordpress Wordpress 2.0.9
Wordpress Wordpress 2.2
Wordpress Wordpress 2.2.1
Wordpress Wordpress 2.0.2
Wordpress Wordpress 2.0.4
Wordpress Wordpress 2.0.5
Wordpress Wordpress 2.0.6
Wordpress Wordpress 2.0.7
Wordpress Wordpress 2.9.1.1
Wordpress Wordpress 2.8.5.1
Wordpress Wordpress 2.8.1
Wordpress Wordpress 2.8.5.2
Wordpress Wordpress 1.0
Wordpress Wordpress 1.0.1
Wordpress Wordpress 1.2.5
Moxiecode Plupload 1.4.3
Moxiecode Plupload 1.4.2
Moxiecode Plupload 1.4.1
Moxiecode Plupload 1.4.0
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.3.1
Wordpress Wordpress 2.2.3
Wordpress Wordpress 2.0.8
Wordpress Wordpress 2.3.3
Wordpress Wordpress 2.6.3
Wordpress Wordpress 2.3.2
Wordpress Wordpress 2.0.10
Wordpress Wordpress 2.1.1
Wordpress Wordpress 2.9.2
Wordpress Wordpress 2.5
Wordpress Wordpress 2.7.1
Wordpress Wordpress 2.8.2
Wordpress Wordpress 1.5.1.2
Wordpress Wordpress 1.2.2
Wordpress Wordpress 1.2
Wordpress Wordpress 1.2.3
Wordpress Wordpress 1.1.1
Moxiecode Plupload 1.5.2
Moxiecode Plupload 1.5.0
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.3
Wordpress Wordpress 2.1.3
Wordpress Wordpress 2.3
Wordpress Wordpress 2.8.6
Wordpress Wordpress 2.8.4
Wordpress Wordpress 2.2.2
Wordpress Wordpress 2.0.1
Wordpress Wordpress 2.1
Wordpress Wordpress 2.1.2
Wordpress Wordpress 2.8.3
Wordpress Wordpress 2.8.5
Wordpress Wordpress 1.5.1.1
Wordpress Wordpress 1.5.1.3
Wordpress Wordpress 1.2.1
Wordpress Wordpress 1.0.2
Wordpress Wordpress 1.2.4
Wordpress Wordpress 1.3.3
Moxiecode Plupload 1.5.3
Moxiecode Plupload 1.5.1
Fedoraproject Fedora 16
Fedoraproject Fedora 18
Fedoraproject Fedora 17
7.5
CVSSv3
CVE-2017-14719
Before version 4.8.2, WordPress was vulnerable to a directory traversal attack during unzip operations in the ZipArchive and PclZip components....
Wordpress Wordpress 4.7.1
Wordpress Wordpress 4.7.2
Wordpress Wordpress 4.6.6
Wordpress Wordpress 4.6.5
Wordpress Wordpress 4.6.4
Wordpress Wordpress 4.5.7
Wordpress Wordpress 4.5.6
Wordpress Wordpress 4.5
Wordpress Wordpress 4.4.9
Wordpress Wordpress 4.4.11
Wordpress Wordpress 4.4.10
Wordpress Wordpress 4.3.5
Wordpress Wordpress 4.3.4
Wordpress Wordpress 4.3
Wordpress Wordpress 4.2.9
Wordpress Wordpress 4.2.16
Wordpress Wordpress 4.2.15
Wordpress Wordpress 4.2
Wordpress Wordpress 4.1.9
Wordpress Wordpress 4.1.2
Wordpress Wordpress 4.1.19
Wordpress Wordpress 4.1.11
Wordpress Wordpress 4.1.10
Wordpress Wordpress 4.0.5
Wordpress Wordpress 4.0.4
Wordpress Wordpress 4.0.15
Wordpress Wordpress 4.0.14
Wordpress Wordpress 3.9.8
Wordpress Wordpress 3.9.7
Wordpress Wordpress 3.9.19
Wordpress Wordpress 3.9.18
Wordpress Wordpress 3.9.11
Wordpress Wordpress 3.9.10
Wordpress Wordpress 3.9.1
Wordpress Wordpress 3.8.4
Wordpress Wordpress 3.8.3
Wordpress Wordpress 3.8.17
Wordpress Wordpress 3.8.16
Wordpress Wordpress 3.8.1
Wordpress Wordpress 3.8
Wordpress Wordpress 4.7
Wordpress Wordpress 4.8.1
Wordpress Wordpress 4.6.7
Wordpress Wordpress 4.5.9
Wordpress Wordpress 4.5.8
Wordpress Wordpress 4.5.10
Wordpress Wordpress 4.5.1
Wordpress Wordpress 4.4.4
Wordpress Wordpress 4.4.3
Wordpress Wordpress 4.4.2
Wordpress Wordpress 4.3.7
Wordpress Wordpress 4.3.6
Wordpress Wordpress 4.3.10
Wordpress Wordpress 4.3.1
Wordpress Wordpress 4.2.4
Wordpress Wordpress 4.2.3
Wordpress Wordpress 4.2.2
Wordpress Wordpress 4.2.10
Wordpress Wordpress 4.2.1
Wordpress Wordpress 4.1.4
Wordpress Wordpress 4.1.3
Wordpress Wordpress 4.1.13
Wordpress Wordpress 4.1.12
Wordpress Wordpress 4.0.7
Wordpress Wordpress 4.0.6
Wordpress Wordpress 4.0.17
Wordpress Wordpress 4.0.16
Wordpress Wordpress 4.0
Wordpress Wordpress 3.9.9
Wordpress Wordpress 3.9.20
Wordpress Wordpress 3.9.2
Wordpress Wordpress 3.9.13
Wordpress Wordpress 3.9.12
Wordpress Wordpress 3.8.6
Wordpress Wordpress 3.8.5
Wordpress Wordpress 3.8.19
Wordpress Wordpress 4.7.5
Wordpress Wordpress 4.8
Wordpress Wordpress 4.6.1
Wordpress Wordpress 4.6
Wordpress Wordpress 4.5.3
Wordpress Wordpress 4.5.2
Wordpress Wordpress 4.4.6
Wordpress Wordpress 4.4.5
Wordpress Wordpress 4.3.9
Wordpress Wordpress 4.3.8
Wordpress Wordpress 4.3.12
Wordpress Wordpress 4.3.11
Wordpress Wordpress 4.2.6
Wordpress Wordpress 4.2.5
Wordpress Wordpress 4.2.12
Wordpress Wordpress 4.2.11
Wordpress Wordpress 4.1.6
Wordpress Wordpress 4.1.5
Wordpress Wordpress 4.1.16
Wordpress Wordpress 4.1.15
Wordpress Wordpress 4.1.14
Wordpress Wordpress 4.0.9
Wordpress Wordpress 4.0.8
Wordpress Wordpress 4.0.19
Wordpress Wordpress 4.0.18
Wordpress Wordpress 4.0.10
Wordpress Wordpress 4.0.1
Wordpress Wordpress 3.9.4
Wordpress Wordpress 3.9.3
Wordpress Wordpress 3.9.15
Wordpress Wordpress 3.9.14
Wordpress Wordpress 3.8.8
Wordpress Wordpress 3.8.7
Wordpress Wordpress 3.8.20
Wordpress Wordpress 3.8.2
Wordpress Wordpress 3.8.13
Wordpress Wordpress 3.8.12
Wordpress Wordpress 3.7.6
Wordpress Wordpress 3.7.5
Wordpress Wordpress 3.7.19
Wordpress Wordpress 3.7.18
Wordpress Wordpress 3.7.11
Wordpress Wordpress 3.7.10
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.2
Wordpress Wordpress 3.1.4
Wordpress Wordpress 3.0.4
Wordpress Wordpress 3.0.3
Wordpress Wordpress 3.8.18
Wordpress Wordpress 3.8.11
Wordpress Wordpress 3.8.10
Wordpress Wordpress 3.7.4
Wordpress Wordpress 3.7.3
Wordpress Wordpress 3.7.17
Wordpress Wordpress 3.7.16
Wordpress Wordpress 3.7.1
Wordpress Wordpress 3.7
Wordpress Wordpress 3.6.1
Wordpress Wordpress 3.4
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.1.3
Wordpress Wordpress 3.1.2
Wordpress Wordpress 3.0.1
Wordpress Wordpress 3.0
Wordpress Wordpress 3.0.2
Wordpress Wordpress 3.7.9
Wordpress Wordpress 3.7.22
Wordpress Wordpress 3.7.21
Wordpress Wordpress 3.7.15
Wordpress Wordpress 3.7.14
Wordpress Wordpress 3.6
Wordpress Wordpress 3.5.2
Wordpress Wordpress 3.3.2
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.1.1
Wordpress Wordpress 3.1
Wordpress Wordpress 4.7.3
Wordpress Wordpress 4.7.4
Wordpress Wordpress 4.6.3
Wordpress Wordpress 4.6.2
Wordpress Wordpress 4.5.5
Wordpress Wordpress 4.5.4
Wordpress Wordpress 4.4.8
Wordpress Wordpress 4.4.7
Wordpress Wordpress 4.4.1
Wordpress Wordpress 4.4
Wordpress Wordpress 4.3.3
Wordpress Wordpress 4.3.2
Wordpress Wordpress 4.2.8
Wordpress Wordpress 4.2.7
Wordpress Wordpress 4.2.14
Wordpress Wordpress 4.2.13
Wordpress Wordpress 4.1.8
Wordpress Wordpress 4.1.7
Wordpress Wordpress 4.1.18
Wordpress Wordpress 4.1.17
Wordpress Wordpress 4.1.1
Wordpress Wordpress 4.1
Wordpress Wordpress 4.0.3
Wordpress Wordpress 4.0.2
Wordpress Wordpress 4.0.13
Wordpress Wordpress 4.0.12
Wordpress Wordpress 4.0.11
Wordpress Wordpress 3.9.6
Wordpress Wordpress 3.9.5
Wordpress Wordpress 3.9.17
Wordpress Wordpress 3.9.16
Wordpress Wordpress 3.9
Wordpress Wordpress 3.8.9
Wordpress Wordpress 3.8.22
Wordpress Wordpress 3.8.21
Wordpress Wordpress 3.8.15
Wordpress Wordpress 3.8.14
Wordpress Wordpress 3.7.8
Wordpress Wordpress 3.7.7
Wordpress Wordpress 3.7.20
Wordpress Wordpress 3.7.2
Wordpress Wordpress 3.7.13
Wordpress Wordpress 3.7.12
Wordpress Wordpress 3.5.1
Wordpress Wordpress 3.5
Wordpress Wordpress 3.3
Wordpress Wordpress 3.2.1
Wordpress Wordpress 3.0.6
Wordpress Wordpress 3.0.5
3 Github repositories available
NA
CVE-2014-0166
The wp_validate_auth_cookie function in wp-includes/pluggable.php in WordPress before 3.7.2 and 3.8.x before 3.8.2 does not properly determine the validity of authentication cookies, which makes it easier for remote attackers to obtain access via a forged cookie....
Wordpress Wordpress 3.6
Wordpress Wordpress 3.5.1
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.3
Wordpress Wordpress 3.1
Wordpress Wordpress 3.0.6
Wordpress Wordpress 2.9.2
Wordpress Wordpress 2.9.1.1
Wordpress Wordpress 2.8.4
Wordpress Wordpress
Wordpress Wordpress 3.8
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.1.4
Wordpress Wordpress 3.1.3
Wordpress Wordpress 3.0.3
Wordpress Wordpress 3.0.2
Wordpress Wordpress 2.8.6
Wordpress Wordpress 2.8.5.2
Wordpress Wordpress 2.8
Wordpress Wordpress 2.7.1
Wordpress Wordpress 2.5.1
Wordpress Wordpress 2.5
Wordpress Wordpress 2.2.1
Wordpress Wordpress 2.2
Wordpress Wordpress 2.0.6
Wordpress Wordpress 2.0.5
Wordpress Wordpress 1.6.2
Wordpress Wordpress 1.5.2
Wordpress Wordpress 1.3.2
Wordpress Wordpress 1.3
Wordpress Wordpress 1.1.1
Wordpress Wordpress 1.0.2
Wordpress Wordpress 3.8.1
Wordpress Wordpress 3.6.1
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.3.2
Wordpress Wordpress 3.1.2
Wordpress Wordpress 3.1.1
Wordpress Wordpress 3.0.1
Wordpress Wordpress 3.0
Wordpress Wordpress 2.8.5.1
Wordpress Wordpress 2.8.5
Wordpress Wordpress 2.7
Wordpress Wordpress 2.6.5
Wordpress Wordpress 2.3.3
Wordpress Wordpress 2.3.2
Wordpress Wordpress 2.1.3
Wordpress Wordpress 2.1.2
Wordpress Wordpress 2.1.1
Wordpress Wordpress 2.0.4
Wordpress Wordpress 2.0.2
Wordpress Wordpress 1.5.1.3
Wordpress Wordpress 1.5.1.2
Wordpress Wordpress 1.2.5
Wordpress Wordpress 1.2.4
Wordpress Wordpress 1.0.1
Wordpress Wordpress 1.0
Wordpress Wordpress 2.8.3
Wordpress Wordpress 2.6.3
Wordpress Wordpress 2.6.2
Wordpress Wordpress 2.3.1
Wordpress Wordpress 2.3
Wordpress Wordpress 2.1
Wordpress Wordpress 2.0.9
Wordpress Wordpress 2.0.11
Wordpress Wordpress 2.0.10
Wordpress Wordpress 1.5.1.1
Wordpress Wordpress 1.5.1
Wordpress Wordpress 1.2.3
Wordpress Wordpress 1.2.2
Wordpress Wordpress 0.71
Wordpress Wordpress 3.7
Wordpress Wordpress 3.5.0
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.2.1
Wordpress Wordpress 3.2
Wordpress Wordpress 3.0.5
Wordpress Wordpress 3.0.4
Wordpress Wordpress 2.9.1
Wordpress Wordpress 2.9
Wordpress Wordpress 2.8.2
Wordpress Wordpress 2.8.1
Wordpress Wordpress 2.6.1
Wordpress Wordpress 2.6
Wordpress Wordpress 2.2.3
Wordpress Wordpress 2.2.2
Wordpress Wordpress 2.0.8
Wordpress Wordpress 2.0.7
Wordpress Wordpress 2.0.1
Wordpress Wordpress 2.0
Wordpress Wordpress 1.5
Wordpress Wordpress 1.3.3
Wordpress Wordpress 1.2.1
Wordpress Wordpress 1.2
1 Github repository available
NA
CVE-2014-5266
The Incutio XML-RPC (IXR) Library, as used in WordPress before 3.9.2 and Drupal 6.x before 6.33 and 7.x before 7.31, does not limit the number of elements in an XML document, which allows remote attackers to cause a denial of service (CPU consumption) via a large document, a...
Wordpress Wordpress 3.0
Wordpress Wordpress 3.0.1
Wordpress Wordpress 3.0.2
Wordpress Wordpress 3.0.3
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.3.2
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.0.4
Wordpress Wordpress 3.0.6
Wordpress Wordpress 3.2
Wordpress Wordpress 3.3
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.5.0
Wordpress Wordpress 3.8.1
Wordpress Wordpress
Wordpress Wordpress 3.1.1
Wordpress Wordpress 3.1.2
Wordpress Wordpress 3.1.3
Wordpress Wordpress 3.1.4
Wordpress Wordpress 3.6
Wordpress Wordpress 3.6.1
Wordpress Wordpress 3.7
Wordpress Wordpress 3.7.1
Wordpress Wordpress 3.8
Wordpress Wordpress 3.0.5
Wordpress Wordpress 3.1
Wordpress Wordpress 3.2.1
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.5.1
Wordpress Wordpress 3.9.0
Drupal Drupal 7.30
Drupal Drupal 7.0
Drupal Drupal 7.13
Drupal Drupal 7.15
Drupal Drupal 7.21
Drupal Drupal 7.23
Drupal Drupal 7.28
Drupal Drupal 7.3
Drupal Drupal 7.5
Drupal Drupal 7.x-dev
Drupal Drupal 6.0
Drupal Drupal 6.1
Drupal Drupal 7.17
Drupal Drupal 7.18
Drupal Drupal 7.19
Drupal Drupal 7.2
Drupal Drupal 7.6
Drupal Drupal 7.7
Drupal Drupal 7.8
Drupal Drupal 7.9
Drupal Drupal 6.10
Drupal Drupal 6.11
Drupal Drupal 6.12
Drupal Drupal 6.13
Drupal Drupal 6.14
Drupal Drupal 6.26
Drupal Drupal 6.27
Drupal Drupal 6.28
Drupal Drupal 6.29
Drupal Drupal 7.1
Drupal Drupal 7.10
Drupal Drupal 7.11
Drupal Drupal 7.12
Drupal Drupal 7.24
Drupal Drupal 7.25
Drupal Drupal 7.26
Drupal Drupal 7.27
Drupal Drupal 6.19
Drupal Drupal 6.2
Drupal Drupal 6.20
Drupal Drupal 6.21
Drupal Drupal 6.9
Drupal Drupal 6.8
Drupal Drupal 6.7
Drupal Drupal 6.6
Drupal Drupal 6.5
Drupal Drupal 6.16
Drupal Drupal 6.18
Drupal Drupal 6.22
Drupal Drupal 6.24
Drupal Drupal 6.30
Drupal Drupal 6.32
Drupal Drupal 7.14
Drupal Drupal 7.16
Drupal Drupal 7.20
Drupal Drupal 7.22
Drupal Drupal 7.29
Drupal Drupal 7.4
Drupal Drupal 6.15
Drupal Drupal 6.17
Drupal Drupal 6.23
Drupal Drupal 6.25
Drupal Drupal 6.3
Drupal Drupal 6.31
Drupal Drupal 6.4
Debian Debian Linux 7.0
1 Metasploit module available
NA
CVE-2014-5265
The Incutio XML-RPC (IXR) Library, as used in WordPress before 3.9.2 and Drupal 6.x before 6.33 and 7.x before 7.31, permits entity declarations without considering recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU...
Wordpress Wordpress 3.0
Wordpress Wordpress 3.0.1
Wordpress Wordpress 3.0.2
Wordpress Wordpress 3.3.1
Wordpress Wordpress 3.3.2
Wordpress Wordpress 3.3.3
Wordpress Wordpress 3.4.0
Wordpress Wordpress 3.1
Wordpress Wordpress 3.1.1
Wordpress Wordpress 3.1.2
Wordpress Wordpress 3.1.3
Wordpress Wordpress 3.1.4
Wordpress Wordpress 3.6
Wordpress Wordpress 3.6.1
Wordpress Wordpress 3.7
Wordpress Wordpress 3.7.1
Wordpress Wordpress 3.0.4
Wordpress Wordpress 3.0.6
Wordpress Wordpress 3.2
Wordpress Wordpress 3.3
Wordpress Wordpress 3.4.1
Wordpress Wordpress 3.5.0
Wordpress Wordpress 3.8.1
Wordpress Wordpress
Wordpress Wordpress 3.0.3
Wordpress Wordpress 3.0.5
Wordpress Wordpress 3.2.1
Wordpress Wordpress 3.4.2
Wordpress Wordpress 3.5.1
Wordpress Wordpress 3.8
Wordpress Wordpress 3.9.0
Drupal Drupal 7.30
Drupal Drupal 7.0
Drupal Drupal 7.17
Drupal Drupal 7.18
Drupal Drupal 7.19
Drupal Drupal 7.2
Drupal Drupal 7.5
Drupal Drupal 7.6
Drupal Drupal 7.7
Drupal Drupal 7.8
Drupal Drupal 6.10
Drupal Drupal 6.11
Drupal Drupal 6.12
Drupal Drupal 6.13
Drupal Drupal 6.26
Drupal Drupal 6.27
Drupal Drupal 6.28
Drupal Drupal 6.29
Drupal Drupal 7.13
Drupal Drupal 7.15
Drupal Drupal 7.21
Drupal Drupal 7.23
Drupal Drupal 7.28
Drupal Drupal 7.3
Drupal Drupal 7.x-dev
Drupal Drupal 6.0
Drupal Drupal 6.1
Drupal Drupal 6.14
Drupal Drupal 6.16
Drupal Drupal 6.22
Drupal Drupal 6.24
Drupal Drupal 6.30
Drupal Drupal 6.32
Drupal Drupal 6.5
Drupal Drupal 7.1
Drupal Drupal 7.10
Drupal Drupal 7.11
Drupal Drupal 7.24
Drupal Drupal 7.25
Drupal Drupal 7.26
Drupal Drupal 7.27
Drupal Drupal 6.18
Drupal Drupal 6.19
Drupal Drupal 6.2
Drupal Drupal 6.20
Drupal Drupal 6.21
Drupal Drupal 6.9
Drupal Drupal 6.8
Drupal Drupal 6.7
Drupal Drupal 6.6
Drupal Drupal 7.12
Drupal Drupal 7.14
Drupal Drupal 7.16
Drupal Drupal 7.20
Drupal Drupal 7.22
Drupal Drupal 7.29
Drupal Drupal 7.4
Drupal Drupal 7.9
Drupal Drupal 6.15
Drupal Drupal 6.17
Drupal Drupal 6.23
Drupal Drupal 6.25
Drupal Drupal 6.3
Drupal Drupal 6.31
Drupal Drupal 6.4
Debian Debian Linux 7.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
elevation of privilege
CVE-2022-42331
CVE-2023-24709
CVE-2023-27569
open redirect
injection
CVE-2023-27087
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »