WordPress Unauthorized Post Access Vulnerability
BID:26885
Info
WordPress Unauthorized Post Access Vulnerability
| Bugtraq ID: | 26885 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 15 2007 12:00AM |
| Updated: | Dec 21 2007 08:51PM |
| Credit: | Discovery is credited to Michael Brooks. |
| Vulnerable: |
WordPress WordPress 2.3.1 |
| Not Vulnerable: | |
Discussion
WordPress Unauthorized Post Access Vulnerability
WordPress is prone to a vulnerability that lets unauthorized users read draft posts before they have been published.
This issue affects WordPress 2.3.1; other versions may also be affected.
NOTE: This BID is being reinstated because further investigation reveals that the application is vulnerable. The exploit URI supplied in the initial report was not sufficient to trigger the issue, which led to the vulnerability claim being refuted. However, follow-up information from the reporter included a URI that does trigger the issue.
WordPress is prone to a vulnerability that lets unauthorized users read draft posts before they have been published.
This issue affects WordPress 2.3.1; other versions may also be affected.
NOTE: This BID is being reinstated because further investigation reveals that the application is vulnerable. The exploit URI supplied in the initial report was not sufficient to trigger the issue, which led to the vulnerability claim being refuted. However, follow-up information from the reporter included a URI that does trigger the issue.
Exploit / POC
WordPress Unauthorized Post Access Vulnerability
The following example was provided:
http://www.example.com/wordpress/index.php/wp-admin/
The following example was provided:
http://www.example.com/wordpress/index.php/wp-admin/
Solution / Fix
WordPress Unauthorized Post Access Vulnerability
Solution:
The vendor released a patch to address this issue. Please see the references for more information.
WordPress WordPress 2.3.1
Solution:
The vendor released a patch to address this issue. Please see the references for more information.
WordPress WordPress 2.3.1
-
WordPress 5487.patch
http://trac.wordpress.org/attachment/ticket/5487/5487.patch
References
WordPress Unauthorized Post Access Vulnerability
References:
References: