CVE-2011-3129

The file upload functionality in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2, when running "on hosts with dangerous security settings," has unknown impact and attack vectors, possibly related to dangerous filenames.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:wordpress:wordpress:3.1:*:*:*:*:*:*:*
cpe:2.3:a:wordpress:wordpress:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:wordpress:wordpress:3.1.2:*:*:*:*:*:*:*
cpe:2.3:a:wordpress:wordpress:3.2:beta1:*:*:*:*:*:*

History

21 Nov 2024, 01:29

Type Values Removed Values Added
References () http://secunia.com/advisories/49138 - () http://secunia.com/advisories/49138 -
References () http://wordpress.org/news/2011/05/wordpress-3-1-3/ - Patch () http://wordpress.org/news/2011/05/wordpress-3-1-3/ - Patch
References () http://www.debian.org/security/2012/dsa-2470 - () http://www.debian.org/security/2012/dsa-2470 -
References () http://www.securityfocus.com/bid/47995 - () http://www.securityfocus.com/bid/47995 -

Information

Published : 2011-08-10 21:55

Updated : 2024-11-21 01:29


NVD link : CVE-2011-3129

Mitre link : CVE-2011-3129

CVE.ORG link : CVE-2011-3129


JSON object : View

Products Affected

wordpress

  • wordpress
CWE
CWE-264

Permissions, Privileges, and Access Controls