3.5
CVSSv2

CVE-2012-4422

Published: 14/09/2012 Updated: 17/09/2012
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

wp-admin/plugins.php in WordPress prior to 3.4.2, when the multisite feature is enabled, does not check for network-administrator privileges before performing a network-wide activation of an installed plugin, which might allow remote authenticated users to make unintended plugin changes by leveraging the Administrator role.

Vulnerable Product Search on Vulmon Subscribe to Product

wordpress wordpress 2.5.1

wordpress wordpress 2.1.3

wordpress wordpress 2.2.1

wordpress wordpress 2.8.6

wordpress wordpress 2.3.1

wordpress wordpress 2.2.2

wordpress wordpress 2.0.6

wordpress wordpress 2.1

wordpress wordpress 2.6.5

wordpress wordpress 2.8.3

wordpress wordpress 2.8.1

wordpress wordpress 2.3

wordpress wordpress 2.0.8

wordpress wordpress 2.8

wordpress wordpress 2.0.9

wordpress wordpress 2.0.1

wordpress wordpress 2.0.10

wordpress wordpress 2.0.2

wordpress wordpress 2.0.4

wordpress wordpress 2.0.5

wordpress wordpress 2.7.1

wordpress wordpress 2.8.5

wordpress wordpress 2.9.1.1

wordpress wordpress 2.8.5.1

wordpress wordpress 1.2

wordpress wordpress 1.0

wordpress wordpress 1.0.1

wordpress wordpress 1.2.5

wordpress wordpress 3.1.3

wordpress wordpress 3.1.4

wordpress wordpress 3.1.1

wordpress wordpress 3.1.2

wordpress wordpress 3.0.1

wordpress wordpress 3.0

wordpress wordpress 2.0.11

wordpress wordpress 2.6.3

wordpress wordpress 2.8.4

wordpress wordpress 2.6.1

wordpress wordpress 2.6

wordpress wordpress 2.1.2

wordpress wordpress 2.9.2

wordpress wordpress 2.7

wordpress wordpress 2.9

wordpress wordpress 1.5.1.1

wordpress wordpress 1.5.1.2

wordpress wordpress 1.5.1.3

wordpress wordpress 1.5.2

wordpress wordpress 1.5

wordpress wordpress 1.3.3

wordpress wordpress 1.3

wordpress wordpress 1.3.2

wordpress wordpress 0.71

wordpress wordpress 3.3

wordpress wordpress 3.3.1

wordpress wordpress 3.3.3

wordpress wordpress 3.3.2

wordpress wordpress 1.5.1

wordpress wordpress 1.2.2

wordpress wordpress 1.2.3

wordpress wordpress 1.1.1

wordpress wordpress 3.0.3

wordpress wordpress 3.0.5

wordpress wordpress 3.0.6

wordpress wordpress 3.1

wordpress wordpress 3.2

wordpress wordpress

wordpress wordpress 2.6.2

wordpress wordpress 2.2.3

wordpress wordpress 2.2

wordpress wordpress 2.3.3

wordpress wordpress 2.0

wordpress wordpress 2.3.2

wordpress wordpress 2.0.7

wordpress wordpress 2.1.1

wordpress wordpress 2.9.1

wordpress wordpress 2.5

wordpress wordpress 2.8.5.2

wordpress wordpress 2.8.2

wordpress wordpress 1.2.1

wordpress wordpress 1.0.2

wordpress wordpress 1.2.4

wordpress wordpress 3.0.2

wordpress wordpress 3.0.4

wordpress wordpress 3.2.1

wordpress wordpress 3.4.0