4
CVSSv2

CVE-2010-0682

Published: 23/02/2010 Updated: 19/01/2011
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 405
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

WordPress 2.9 prior to 2.9.2 allows remote authenticated users to read trash posts from other authors via a direct request with a modified p parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

wordpress wordpress 2.9

wordpress wordpress 2.9.1

Exploits

WordPress >= 29 Failure to Restrict URL Access wwwthomasmackenziecouk/ 1 *Advisory Information* Title: WordPress >= 29 Failure to Restrict URL Access Date published: 2 *Vulnerability Information* Class: Failure to Restrict URL Access Remotely Exploitable: Yes Locally Exploitable: Yes 3 *Software Description* Wo ...