Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-5715

The mw_editPost function in wp-includes/class-wp-xmlrpc-server.php in the XMLRPC subsystem in WordPress before 4.3.1 allows remote authenticated users to bypass intended access restrictions, and arrange for a private post to be published and sticky, via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.344
EPSS Ranking 96.8%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.0
References
Products affected by CVE-2015-5715


Contact Us

Shodan ® - All rights reserved