cbcvebase.

Debian Wordpress vulnerabilities

333 known vulnerabilities affecting debian/wordpress.

Total CVEs
333
CISA KEV
0
Public exploits
53
Exploited in wild
13
Severity breakdown
CRITICAL21HIGH56MEDIUM199LOW57

Vulnerabilities

Page 3 of 17
CVE-2024-31211P2LOWCVSS 5.5fixed in wordpress 6.4.2+dfsg1-1 (forky)2024
CVE-2024-31211 [MEDIUM] CVE-2024-31211: wordpress - WordPress is an open publishing platform for the Web. Unserialization of instanc... WordPress is an open publishing platform for the Web. Unserialization of instances of the `WP_HTML_Token` class allows for code execution via its `__destruct()` magic method. This issue was fixed in WordPress 6.4.2 on December 6th, 2023. Versions prior to 6.4.0 are not affected. Scope: local bookworm: resolved bullseye: resolved forky: resolved (fixed in 6.4.2+d
debian
CVE-2020-28032P2CRITICALCVSS 9.8fixed in wordpress 5.5.3+dfsg1-1 (bookworm)2020
CVE-2020-28032 [CRITICAL] CVE-2020-28032: wordpress - WordPress before 5.5.2 mishandles deserialization requests in wp-includes/Reques... WordPress before 5.5.2 mishandles deserialization requests in wp-includes/Requests/Utility/FilteredIterator.php. Scope: local bookworm: resolved (fixed in 5.5.3+dfsg1-1) bullseye: resolved (fixed in 5.5.3+dfsg1-1) forky: resolved (fixed in 5.5.3+dfsg1-1) sid: resolved (fixed in 5.5.3+dfsg1-1) trixie: resolved (fixed in 5.5.3+dfsg1-1)
debian
CVE-2020-28037P2CRITICALCVSS 9.8fixed in wordpress 5.5.3+dfsg1-1 (bookworm)2020
CVE-2020-28037 [CRITICAL] CVE-2020-28037: wordpress - is_blog_installed in wp-includes/functions.php in WordPress before 5.5.2 imprope... is_blog_installed in wp-includes/functions.php in WordPress before 5.5.2 improperly determines whether WordPress is already installed, which might allow an attacker to perform a new installation, leading to remote code execution (as well as a denial of service for the old installation). Scope: local bookworm: resolved (fixed in 5.5.3+dfsg1-1) bullseye: resolve
debian
CVE-2014-5266P3MEDIUMCVSS 5.0PoCfixed in wordpress 3.9.2+dfsg-1 (bookworm)2014
CVE-2014-5266 [MEDIUM] CVE-2014-5266: wordpress - The Incutio XML-RPC (IXR) Library, as used in WordPress before 3.9.2 and Drupal ... The Incutio XML-RPC (IXR) Library, as used in WordPress before 3.9.2 and Drupal 6.x before 6.33 and 7.x before 7.31, does not limit the number of elements in an XML document, which allows remote attackers to cause a denial of service (CPU consumption) via a large document, a different vulnerability than CVE-2014-5265. Scope: local bookworm: resolved (fixed in 3.9.
debian
CVE-2020-28036P3CRITICALCVSS 9.8fixed in wordpress 5.5.3+dfsg1-1 (bookworm)2020
CVE-2020-28036 [CRITICAL] CVE-2020-28036: wordpress - wp-includes/class-wp-xmlrpc-server.php in WordPress before 5.5.2 allows attacker... wp-includes/class-wp-xmlrpc-server.php in WordPress before 5.5.2 allows attackers to gain privileges by using XML-RPC to comment on a post. Scope: local bookworm: resolved (fixed in 5.5.3+dfsg1-1) bullseye: resolved (fixed in 5.5.3+dfsg1-1) forky: resolved (fixed in 5.5.3+dfsg1-1) sid: resolved (fixed in 5.5.3+dfsg1-1) trixie: resolved (fixed in 5.5.3+dfsg1-1)
debian
CVE-2007-1897P3MEDIUMCVSS 6.5PoCfixed in wordpress 2.1.3-1 (bookworm)2007
CVE-2007-1897 [MEDIUM] CVE-2007-1897: wordpress - SQL injection vulnerability in xmlrpc (xmlrpc.php) in WordPress 2.1.2, and proba... SQL injection vulnerability in xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users to execute arbitrary SQL commands via a string parameter value in an XML RPC mt.setPostCategories method call, related to the post_id variable. Scope: local bookworm: resolved (fixed in 2.1.3-1) bullseye: resolved (fixed in 2.1.3-1) forky:
debian
CVE-2007-3140P3MEDIUMCVSS 6.5PoCfixed in wordpress 2.2.1-1 (bookworm)2007
CVE-2007-3140 [MEDIUM] CVE-2007-3140: wordpress - SQL injection vulnerability in xmlrpc.php in WordPress 2.2 allows remote authent... SQL injection vulnerability in xmlrpc.php in WordPress 2.2 allows remote authenticated users to execute arbitrary SQL commands via a parameter value in an XML RPC wp.suggestCategories methodCall, a different vector than CVE-2007-1897. Scope: local bookworm: resolved (fixed in 2.2.1-1) bullseye: resolved (fixed in 2.2.1-1) forky: resolved (fixed in 2.2.1-1) sid: re
debian
CVE-2017-1000600P3HIGHCVSS 8.8fixed in wordpress 4.9.1+dfsg-1 (bookworm)2017
CVE-2017-1000600 [HIGH] CVE-2017-1000600: wordpress - WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumb... WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have bee
debian
CVE-2017-17091P3HIGHCVSS 8.8fixed in wordpress 4.9.1+dfsg-1 (bookworm)2017
CVE-2017-17091 [HIGH] CVE-2017-17091: wordpress - wp-admin/user-new.php in WordPress before 4.9.1 sets the newbloguser key to a st... wp-admin/user-new.php in WordPress before 4.9.1 sets the newbloguser key to a string that can be directly derived from the user ID, which allows remote attackers to bypass intended access restrictions by entering this string. Scope: local bookworm: resolved (fixed in 4.9.1+dfsg-1) bullseye: resolved (fixed in 4.9.1+dfsg-1) forky: resolved (fixed in 4.9.1+dfsg-1) s
debian
CVE-2020-28035P3CRITICALCVSS 9.8fixed in wordpress 5.5.3+dfsg1-1 (bookworm)2020
CVE-2020-28035 [CRITICAL] CVE-2020-28035: wordpress - WordPress before 5.5.2 allows attackers to gain privileges via XML-RPC. WordPress before 5.5.2 allows attackers to gain privileges via XML-RPC. Scope: local bookworm: resolved (fixed in 5.5.3+dfsg1-1) bullseye: resolved (fixed in 5.5.3+dfsg1-1) forky: resolved (fixed in 5.5.3+dfsg1-1) sid: resolved (fixed in 5.5.3+dfsg1-1) trixie: resolved (fixed in 5.5.3+dfsg1-1)
debian
CVE-2022-21664P3HIGHCVSS 7.4fixed in wordpress 5.8.3+dfsg1-1 (bookworm)2022
CVE-2022-21664 [HIGH] CVE-2022-21664: wordpress - WordPress is a free and open-source content management system written in PHP and... WordPress is a free and open-source content management system written in PHP and paired with a MariaDB database. Due to lack of proper sanitization in one of the classes, there's potential for unintended SQL queries to be executed. This has been patched in WordPress version 5.8.3. Older affected versions are also fixed via security release, that go back till 4.1.3
debian
CVE-2015-2213P3HIGHCVSS 7.5fixed in wordpress 4.2.4+dfsg-1 (bookworm)2015
CVE-2015-2213 [HIGH] CVE-2015-2213: wordpress - SQL injection vulnerability in the wp_untrash_post_comments function in wp-inclu... SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is mishandled after retrieval from the trash. Scope: local bookworm: resolved (fixed in 4.2.4+dfsg-1) bullseye: resolved (fixed in 4.2.4+dfsg-1) forky: resolved (fixed in 4
debian
CVE-2008-4796P3MEDIUMCVSS 10.0fixed in libphp-snoopy 1.2.4-1 (bookworm)2008
CVE-2008-4796 [CRITICAL] CVE-2008-4796: libphp-snoopy - The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier... The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamate, (5) opendb, (6) pixelpost, and possibly other products, allows remote attackers to execute arbitrary commands via shell metacharacters in https URLs. Scope: local bookworm: resolved (fixed in 1.2.4-1) bullsey
debian
CVE-2005-4600P3MEDIUMCVSS 6.4PoCfixed in wordpress 2.5.1-3 (bookworm)2005
CVE-2005-4600 [MEDIUM] CVE-2005-4600: wordpress - Directory traversal vulnerability in tiny_mce_gzip.php in TinyMCE Compressor PHP... Directory traversal vulnerability in tiny_mce_gzip.php in TinyMCE Compressor PHP before 1.06 allows remote attackers to read or include arbitrary files via a trailing null byte (%00) in the (1) theme, (2) language, (3) plugins, or (4) lang parameter. Scope: local bookworm: resolved (fixed in 2.5.1-3) bullseye: resolved (fixed in 2.5.1-3) forky: resolved (fixed in
debian
CVE-2017-16510P3CRITICALCVSS 9.8fixed in wordpress 4.8.3+dfsg-1 (bookworm)2017
CVE-2017-16510 [CRITICAL] CVE-2017-16510: wordpress - WordPress before 4.8.3 is affected by an issue where $wpdb->prepare() can create... WordPress before 4.8.3 is affected by an issue where $wpdb->prepare() can create unexpected and unsafe queries leading to potential SQL injection (SQLi) in plugins and themes, as demonstrated by a "double prepare" approach, a different vulnerability than CVE-2017-14723. Scope: local bookworm: resolved (fixed in 4.8.3+dfsg-1) bullseye: resolved (fixed in 4.8.3+
debian
CVE-2019-16223P3MEDIUMCVSS 5.4PoCfixed in wordpress 5.2.3+dfsg1-1 (bookworm)2019
CVE-2019-16223 [MEDIUM] CVE-2019-16223: wordpress - WordPress before 5.2.3 allows XSS in post previews by authenticated users. WordPress before 5.2.3 allows XSS in post previews by authenticated users. Scope: local bookworm: resolved (fixed in 5.2.3+dfsg1-1) bullseye: resolved (fixed in 5.2.3+dfsg1-1) forky: resolved (fixed in 5.2.3+dfsg1-1) sid: resolved (fixed in 5.2.3+dfsg1-1) trixie: resolved (fixed in 5.2.3+dfsg1-1)
debian
CVE-2009-2336P4LOWCVSS 5.0PoCfixed in wordpress 2.8.3-1 (bookworm)2009
CVE-2009-2336 [MEDIUM] CVE-2009-2336: wordpress - The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits... The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience." Scope: l
debian
CVE-2017-17092P4MEDIUMCVSS 5.4PoCfixed in wordpress 4.9.1+dfsg-1 (bookworm)2017
CVE-2017-17092 [MEDIUM] CVE-2017-17092: wordpress - wp-includes/functions.php in WordPress before 4.9.1 does not require the unfilte... wp-includes/functions.php in WordPress before 4.9.1 does not require the unfiltered_html capability for upload of .js files, which might allow remote attackers to conduct XSS attacks via a crafted file. Scope: local bookworm: resolved (fixed in 4.9.1+dfsg-1) bullseye: resolved (fixed in 4.9.1+dfsg-1) forky: resolved (fixed in 4.9.1+dfsg-1) sid: resolved (fixed i
debian
CVE-2020-28039P3CRITICALCVSS 9.1fixed in wordpress 5.5.3+dfsg1-1 (bookworm)2020
CVE-2020-28039 [CRITICAL] CVE-2020-28039: wordpress - is_protected_meta in wp-includes/meta.php in WordPress before 5.5.2 allows arbit... is_protected_meta in wp-includes/meta.php in WordPress before 5.5.2 allows arbitrary file deletion because it does not properly determine whether a meta key is considered protected. Scope: local bookworm: resolved (fixed in 5.5.3+dfsg1-1) bullseye: resolved (fixed in 5.5.3+dfsg1-1) forky: resolved (fixed in 5.5.3+dfsg1-1) sid: resolved (fixed in 5.5.3+dfsg1-1)
debian
CVE-2006-4208P4LOWCVSS 5.0PoCfixed in wordpress 2.0.5-0.1 (bookworm)2006
CVE-2006-4208 [MEDIUM] CVE-2006-4208: wordpress - Directory traversal vulnerability in wp-db-backup.php in Skippy WP-DB-Backup plu... Directory traversal vulnerability in wp-db-backup.php in Skippy WP-DB-Backup plugin for WordPress 1.7 and earlier allows remote authenticated users with administrative privileges to read arbitrary files via a .. (dot dot) in the backup parameter to edit.php. Scope: local bookworm: resolved (fixed in 2.0.5-0.1) bullseye: resolved (fixed in 2.0.5-0.1) forky: resolve
debian
Debian Wordpress vulnerabilities | cvebase