Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-2146

wp-includes/vars.php in Wordpress before 2.2.3 does not properly extract the current path from the PATH_INFO ($PHP_SELF), which allows remote attackers to bypass intended access restrictions for certain pages.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2008-2146


Contact Us

Shodan ® - All rights reserved