Related Vulnerabilities: CVE-2017-6816  

It has been discovered that unintended files can be deleted by administrators in WordPress before 4.7.3 (wp-admin/plugins.php) using the plugin deletion functionality.

Severity Medium

Remote Yes

Type Insufficient validation

Description

It has been discovered that unintended files can be deleted by administrators in WordPress before 4.7.3 (wp-admin/plugins.php) using the plugin deletion functionality.

AVG-202 wordpress 4.7.2-1 4.7.3-1 Medium Fixed

16 Mar 2017 ASA-201703-14 AVG-202 wordpress Medium multiple issues

https://github.com/WordPress/WordPress/commit/4d80f8b3e1b00a3edcee0774dc9c2f4c78f9e663