CVE-2018-20149
Summary
| CVE | CVE-2018-20149 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-12-14 20:29:00 UTC |
| Updated | 2019-03-04 14:20:00 UTC |
| Description | In WordPress before 4.9.9 and 5.x before 5.0.1, when the Apache HTTP Server is used, authors could upload crafted files that bypass intended MIME type restrictions, leading to XSS, as demonstrated by a .jpg file without JPEG data. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Debian | Debian Linux | 8.0 | All | All | All |
| Operating System | Debian | Debian Linux | 9.0 | All | All | All |
| Operating System | Debian | Debian Linux | 8.0 | All | All | All |
| Operating System | Debian | Debian Linux | 9.0 | All | All | All |
| Application | Wordpress | Wordpress | All | All | All | All |
| Application | Wordpress | Wordpress | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| WordPress <= 5.0 - File Upload to XSS on Apache Web Servers | MISC | wpvulndb.com | Vendor Advisory |
| Debian -- Security Information -- DSA-4401-1 wordpress | DEBIAN | www.debian.org | Third Party Advisory |
| Version 4.9.9 | WordPress.org | MISC | codex.wordpress.org | Product, Vendor Advisory |
| WordPress Prior to 5.0.1 Multiple Security Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| WordPress 5.0.1 Security Release | MISC | wordpress.org | Release Notes, Vendor Advisory |
| [SECURITY] [DLA 1673-1] wordpress security update | MLIST | lists.debian.org | Mailing List, Third Party Advisory |
| Version 5.0.1 | WordPress.org | MISC | wordpress.org | Release Notes, Vendor Advisory |
| WordPress plugs bug that led to Google indexing some user passwords | ZDNet | MISC | www.zdnet.com | Press/Media Coverage, Third Party Advisory |
| Media: Improve verification of MIME file types. · WordPress/WordPress@246a70b · GitHub | MISC | github.com | Patch, Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.