跳转到帖子

Debian: CVE-2022-4973: wordpress -- security update

recommended_posts

发布于
  • Members

Debian: CVE-2022-4973: wordpress -- security update

Severity
5
CVSS
(AV:N/AC:M/Au:S/C:P/I:P/A:N)
Published
10/16/2024
Created
10/22/2024
Added
10/21/2024
Modified
01/28/2025

Description

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

Solution(s)

  • debian-upgrade-wordpress

References

  • https://attackerkb.com/topics/cve-2022-4973
  • CVE - 2022-4973
  • 查看数 694
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…