vendor:
WordPress
by:
Unknown
5.5
CVSS
MEDIUM
Unauthorized Access
284
CWE
Product Name: WordPress
Affected Version From: 2.3.2001
Affected Version To: 2.3.2001
Patch Exists: YES
Related CWE:
CPE: a:wordpress:wordpress:2.3.1
Platforms Tested:
2007
WordPress Unauthorized Draft Post Reading Vulnerability
The vulnerability allows unauthorized users to read draft posts in WordPress before they have been published. An attacker can exploit this issue by accessing a specific URI.
Mitigation:
Update to the latest version of WordPress to fix the vulnerability.