cbcvebase.

Debian Wordpress vulnerabilities

333 known vulnerabilities affecting debian/wordpress.

Total CVEs
333
CISA KEV
0
Public exploits
53
Exploited in wild
13
Severity breakdown
CRITICAL21HIGH56MEDIUM199LOW57

Vulnerabilities

Page 4 of 17
CVE-2013-4338P3HIGHCVSS 7.5fixed in wordpress 3.6.1+dfsg-1 (bookworm)2013
CVE-2013-4338 [HIGH] CVE-2013-4338: wordpress - wp-includes/functions.php in WordPress before 3.6.1 does not properly determine ... wp-includes/functions.php in WordPress before 3.6.1 does not properly determine whether data has been serialized, which allows remote attackers to execute arbitrary code by triggering erroneous PHP unserialize operations. Scope: local bookworm: resolved (fixed in 3.6.1+dfsg-1) bullseye: resolved (fixed in 3.6.1+dfsg-1) forky: resolved (fixed in 3.6.1+dfsg-1) sid: re
debian
CVE-2019-20041P3CRITICALCVSS 9.8fixed in wordpress 5.3.2+dfsg1-1 (bookworm)2019
CVE-2019-20041 [CRITICAL] CVE-2019-20041: wordpress - wp_kses_bad_protocol in wp-includes/kses.php in WordPress before 5.3.1 mishandle... wp_kses_bad_protocol in wp-includes/kses.php in WordPress before 5.3.1 mishandles the HTML5 colon named entity, allowing attackers to bypass input sanitization, as demonstrated by the javascript: substring. Scope: local bookworm: resolved (fixed in 5.3.2+dfsg1-1) bullseye: resolved (fixed in 5.3.2+dfsg1-1) forky: resolved (fixed in 5.3.2+dfsg1-1) sid: resolved
debian
CVE-2008-0196P4MEDIUMCVSS 5.0PoCfixed in wordpress 2.3.3-1 (bookworm)2008
CVE-2008-0196 [MEDIUM] CVE-2008-0196: wordpress - Multiple directory traversal vulnerabilities in WordPress 2.0.11 and earlier all... Multiple directory traversal vulnerabilities in WordPress 2.0.11 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in (1) the page parameter to certain PHP scripts under wp-admin/ or (2) the import parameter to wp-admin/admin.php, as demonstrated by discovering the full path via a request for the \..\..\wp-config pathname; and allow rem
debian
CVE-2019-17669P3CRITICALCVSS 9.8fixed in wordpress 5.2.4+dfsg1-1 (bookworm)2019
CVE-2019-17669 [CRITICAL] CVE-2019-17669: wordpress - WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability be... WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because URL validation does not consider the interpretation of a name as a series of hex characters. Scope: local bookworm: resolved (fixed in 5.2.4+dfsg1-1) bullseye: resolved (fixed in 5.2.4+dfsg1-1) forky: resolved (fixed in 5.2.4+dfsg1-1) sid: resolved (fixed in 5.2.4+dfsg1-1) tr
debian
CVE-2009-2334P4LOWCVSS 4.9PoCfixed in wordpress 2.8.3-1 (bookworm)2009
CVE-2009-2334 [MEDIUM] CVE-2009-2334: wordpress - wp-admin/admin.php in WordPress and WordPress MU before 2.8.1 does not require a... wp-admin/admin.php in WordPress and WordPress MU before 2.8.1 does not require administrative authentication to access the configuration of a plugin, which allows remote attackers to specify a configuration file in the page parameter to obtain sensitive information or modify this file, as demonstrated by the (1) collapsing-archives/options.txt, (2) akismet/readme.
debian
CVE-2007-1244P4MEDIUMCVSS 6.8PoCfixed in wordpress 2.1.2-1 (bookworm)2007
CVE-2007-1244 [MEDIUM] CVE-2007-1244: wordpress - Cross-site request forgery (CSRF) vulnerability in the AdminPanel in WordPress 2... Cross-site request forgery (CSRF) vulnerability in the AdminPanel in WordPress 2.1.1 and earlier allows remote attackers to perform privileged actions as administrators, as demonstrated using the delete action in wp-admin/post.php. NOTE: this issue can be leveraged to perform cross-site scripting (XSS) attacks and steal cookies via the post parameter. Scope: local
debian
CVE-2017-14719P3HIGHCVSS 7.5fixed in wordpress 4.8.2+dfsg-1 (bookworm)2017
CVE-2017-14719 [HIGH] CVE-2017-14719: wordpress - Before version 4.8.2, WordPress was vulnerable to a directory traversal attack d... Before version 4.8.2, WordPress was vulnerable to a directory traversal attack during unzip operations in the ZipArchive and PclZip components. Scope: local bookworm: resolved (fixed in 4.8.2+dfsg-1) bullseye: resolved (fixed in 4.8.2+dfsg-1) forky: resolved (fixed in 4.8.2+dfsg-1) sid: resolved (fixed in 4.8.2+dfsg-1) trixie: resolved (fixed in 4.8.2+dfsg-1)
debian
CVE-2016-4029P3HIGHCVSS 8.6fixed in wordpress 4.5+dfsg-1 (bookworm)2016
CVE-2016-4029 [HIGH] CVE-2016-4029: wordpress - WordPress before 4.5 does not consider octal and hexadecimal IP address formats ... WordPress before 4.5 does not consider octal and hexadecimal IP address formats when determining an intranet address, which allows remote attackers to bypass an intended SSRF protection mechanism via a crafted address. Scope: local bookworm: resolved (fixed in 4.5+dfsg-1) bullseye: resolved (fixed in 4.5+dfsg-1) forky: resolved (fixed in 4.5+dfsg-1) sid: resolved (f
debian
CVE-2016-2222P3HIGHCVSS 8.6fixed in wordpress 4.4.2+dfsg-1 (bookworm)2016
CVE-2016-2222 [HIGH] CVE-2016-2222: wordpress - The wp_http_validate_url function in wp-includes/http.php in WordPress before 4.... The wp_http_validate_url function in wp-includes/http.php in WordPress before 4.4.2 allows remote attackers to conduct server-side request forgery (SSRF) attacks via a zero value in the first octet of an IPv4 address in the u parameter to wp-admin/press-this.php. Scope: local bookworm: resolved (fixed in 4.4.2+dfsg-1) bullseye: resolved (fixed in 4.4.2+dfsg-1) forky
debian
CVE-2008-2392P3LOWCVSS 9.0fixed in wordpress 2.5.1-4 (bookworm)2008
CVE-2008-2392 [CRITICAL] CVE-2008-2392: wordpress - Unrestricted file upload vulnerability in WordPress 2.5.1 and earlier might allo... Unrestricted file upload vulnerability in WordPress 2.5.1 and earlier might allow remote authenticated administrators to upload and execute arbitrary PHP files via the Upload section in the Write Tabs area of the dashboard. Scope: local bookworm: resolved (fixed in 2.5.1-4) bullseye: resolved (fixed in 2.5.1-4) forky: resolved (fixed in 2.5.1-4) sid: resolved (f
debian
CVE-2017-14725P4MEDIUMCVSS 5.4PoCfixed in wordpress 4.8.2+dfsg-1 (bookworm)2017
CVE-2017-14725 [MEDIUM] CVE-2017-14725: wordpress - Before version 4.8.2, WordPress was susceptible to an open redirect attack in wp... Before version 4.8.2, WordPress was susceptible to an open redirect attack in wp-admin/edit-tag-form.php and wp-admin/user-edit.php. Scope: local bookworm: resolved (fixed in 4.8.2+dfsg-1) bullseye: resolved (fixed in 4.8.2+dfsg-1) forky: resolved (fixed in 4.8.2+dfsg-1) sid: resolved (fixed in 4.8.2+dfsg-1) trixie: resolved (fixed in 4.8.2+dfsg-1)
debian
CVE-2017-14722P3HIGHCVSS 7.5fixed in wordpress 4.8.2+dfsg-1 (bookworm)2017
CVE-2017-14722 [HIGH] CVE-2017-14722: wordpress - Before version 4.8.2, WordPress allowed a Directory Traversal attack in the Cust... Before version 4.8.2, WordPress allowed a Directory Traversal attack in the Customizer component via a crafted theme filename. Scope: local bookworm: resolved (fixed in 4.8.2+dfsg-1) bullseye: resolved (fixed in 4.8.2+dfsg-1) forky: resolved (fixed in 4.8.2+dfsg-1) sid: resolved (fixed in 4.8.2+dfsg-1) trixie: resolved (fixed in 4.8.2+dfsg-1)
debian
CVE-2024-31210P3HIGHCVSS 7.6fixed in wordpress 6.1.6+dfsg1-0+deb12u1 (bookworm)2024
CVE-2024-31210 [HIGH] CVE-2024-31210: wordpress - WordPress is an open publishing platform for the Web. It's possible for a file o... WordPress is an open publishing platform for the Web. It's possible for a file of a type other than a zip file to be submitted as a new plugin by an administrative user on the Plugins -> Add New -> Upload Plugin screen in WordPress. If FTP credentials are requested for installation (in order to move the file into place outside of the `uploads` directory) then the
debian
CVE-2012-3414P4MEDIUMCVSS 4.3PoCfixed in wordpress 3.5.1+dfsg-1 (bookworm)2012
CVE-2012-3414 [MEDIUM] CVE-2012-3414: wordpress - Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 a... Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 and earlier, as used in WordPress before 3.3.2, TinyMCE Image Manager 1.1, and other products, allows remote attackers to inject arbitrary web script or HTML via the movieName parameter, related to the "ExternalInterface.call" function. Scope: local bookworm: resolved (fixed in 3.5.1+df
debian
CVE-2019-17670P3CRITICALCVSS 9.8fixed in wordpress 5.2.4+dfsg1-1 (bookworm)2019
CVE-2019-17670 [CRITICAL] CVE-2019-17670: wordpress - WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability be... WordPress before 5.2.4 has a Server Side Request Forgery (SSRF) vulnerability because Windows paths are mishandled during certain validation of relative URLs. Scope: local bookworm: resolved (fixed in 5.2.4+dfsg1-1) bullseye: resolved (fixed in 5.2.4+dfsg1-1) forky: resolved (fixed in 5.2.4+dfsg1-1) sid: resolved (fixed in 5.2.4+dfsg1-1) trixie: resolved (fixe
debian
CVE-2006-6808P4MEDIUMCVSS 6.8PoCfixed in wordpress 2.0.6-1 (bookworm)2006
CVE-2006-6808 [MEDIUM] CVE-2006-6808: wordpress - Cross-site scripting (XSS) vulnerability in wp-admin/templates.php in WordPress ... Cross-site scripting (XSS) vulnerability in wp-admin/templates.php in WordPress 2.0.5 allows remote attackers to inject arbitrary web script or HTML via the file parameter. NOTE: some sources have reported this as a vulnerability in the get_file_description function in wp-admin/admin-functions.php. Scope: local bookworm: resolved (fixed in 2.0.6-1) bullseye: resol
debian
CVE-2010-0682P4LOWCVSS 4.0PoCfixed in wordpress 2.9.2-1 (bookworm)2010
CVE-2010-0682 [MEDIUM] CVE-2010-0682: wordpress - WordPress 2.9 before 2.9.2 allows remote authenticated users to read trash posts... WordPress 2.9 before 2.9.2 allows remote authenticated users to read trash posts from other authors via a direct request with a modified p parameter. Scope: local bookworm: resolved (fixed in 2.9.2-1) bullseye: resolved (fixed in 2.9.2-1) forky: resolved (fixed in 2.9.2-1) sid: resolved (fixed in 2.9.2-1) trixie: resolved (fixed in 2.9.2-1)
debian
CVE-2012-2399P3CRITICALCVSS 10.0fixed in wordpress 3.3.2+dfsg-1 (bookworm)2012
CVE-2012-2399 [CRITICAL] CVE-2012-2399: wordpress - Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFupload 2.2.0.1 a... Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFupload 2.2.0.1 and earlier, as used in WordPress before 3.5.2, TinyMCE Image Manager 1.1 and earlier, and other products allows remote attackers to inject arbitrary web script or HTML via the buttonText parameter, a different vulnerability than CVE-2012-3414. Scope: local bookworm: resolved (fixed i
debian
CVE-2016-5838P3HIGHCVSS 7.5fixed in wordpress 4.5.3+dfsg-1 (bookworm)2016
CVE-2016-5838 [HIGH] CVE-2016-5838: wordpress - WordPress before 4.5.3 allows remote attackers to bypass intended password-chang... WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge of a cookie. Scope: local bookworm: resolved (fixed in 4.5.3+dfsg-1) bullseye: resolved (fixed in 4.5.3+dfsg-1) forky: resolved (fixed in 4.5.3+dfsg-1) sid: resolved (fixed in 4.5.3+dfsg-1) trixie: resolved (fixed in 4.5.3+dfsg-1)
debian
CVE-2009-2853P3CRITICALCVSS 10.0fixed in wordpress 2.8.3-1 (bookworm)2009
CVE-2009-2853 [CRITICAL] CVE-2009-2853: wordpress - Wordpress before 2.8.3 allows remote attackers to gain privileges via a direct r... Wordpress before 2.8.3 allows remote attackers to gain privileges via a direct request to (1) admin-footer.php, (2) edit-category-form.php, (3) edit-form-advanced.php, (4) edit-form-comment.php, (5) edit-link-category-form.php, (6) edit-link-form.php, (7) edit-page-form.php, and (8) edit-tag-form.php in wp-admin/. Scope: local bookworm: resolved (fixed in 2.8.3-
debian
Debian Wordpress vulnerabilities | cvebase