CVE-2012-6635
21.01.2014, 01:55
wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3.3.3 does not properly restrict excerpt-view access, which allows remote authenticated users to obtain sensitive information by visiting a draft.Enginsight
| Vendor | Product | Version |
|---|---|---|
| wordpress | wordpress | 𝑥 ≤ 3.3.2 |
| wordpress | wordpress | 3.0 |
| wordpress | wordpress | 3.0.1 |
| wordpress | wordpress | 3.0.2 |
| wordpress | wordpress | 3.0.3 |
| wordpress | wordpress | 3.0.4 |
| wordpress | wordpress | 3.0.5 |
| wordpress | wordpress | 3.0.6 |
| wordpress | wordpress | 3.1 |
| wordpress | wordpress | 3.1.1 |
| wordpress | wordpress | 3.1.2 |
| wordpress | wordpress | 3.1.3 |
| wordpress | wordpress | 3.1.4 |
| wordpress | wordpress | 3.2 |
| wordpress | wordpress | 3.2:beta1 |
| wordpress | wordpress | 3.2.1 |
| wordpress | wordpress | 3.3 |
| wordpress | wordpress | 3.3.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration