The file upload functionality in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2, when running "on hosts with dangerous security settings," has unknown impact and attack vectors, possibly related to dangerous filenames.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:29
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/49138 - | |
References | () http://wordpress.org/news/2011/05/wordpress-3-1-3/ - Patch | |
References | () http://www.debian.org/security/2012/dsa-2470 - | |
References | () http://www.securityfocus.com/bid/47995 - |
Information
Published : 2011-08-10 21:55
Updated : 2024-11-21 01:29
NVD link : CVE-2011-3129
Mitre link : CVE-2011-3129
CVE.ORG link : CVE-2011-3129
JSON object : View
Products Affected
wordpress
- wordpress
CWE
CWE-264
Permissions, Privileges, and Access Controls