'; } else{ echo ''; } echo '
|
|
|||
Release Date:2025/9/15
Rule Name:CVE-2018-6389: Wordpress load-scripts.php Lets Remote Users Consume Excessive I/O Resoures and Denial of Service Vulnerability
Severity:high
CVE ID:CVE-2018-6389
| Descripiton:
|
A vulnerability was reported in word press. A remote user can cause denial of service conditions on the target service A remote user can load a specially crafted URL that invokes 'load-scripts.php' to cause the target application to consume excessive file input/output resources. This can be exploited to deny service to the application. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.