|
|||
Rule General Information |
---|
Release Date: | 2017-06-30 | |
Rule Name: | WEB-OTHER Wordpress 4.7.0/4.7.1 Unauthenticated Content Injection -1.b | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | This privilege escalation vulnerability affects the WordPress REST API that was recently added and enabled by default on WordPress 4.7.0. | |
Impact: | Remote code execution | |
Affected OS: | Other Unix, Linux | |
Reference: | ExploitDB:41223 |
|
Solutions |
---|
Update vendor's patch. |