Peter's Math Anti-Spam Spinoff plugin for WordPress generates audio CAPTCHA clips by concatenating static audio files without any additional distortion, which allows remote attackers to bypass CAPTCHA protection by reading certain bytes from the generated clip.
References
Configurations
History
21 Nov 2024, 00:58
Type | Values Removed | Values Added |
---|---|---|
References | () http://docs.google.com/View?docid=df36cd52_19xzmkwqcg - | |
References | () http://www.securityfocus.com/archive/1/486331/100/200/threaded - | |
References | () http://www.securityfocus.com/bid/27287 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/39688 - |
Information
Published : 2009-09-11 16:30
Updated : 2024-11-21 00:58
NVD link : CVE-2008-7216
Mitre link : CVE-2008-7216
CVE.ORG link : CVE-2008-7216
JSON object : View
Products Affected
wordpress
- peter\'s_math_anti-spam_for_wordpress
CWE
CWE-264
Permissions, Privileges, and Access Controls