CVE Vulnerabilities

CVE-2011-3129

Published: Aug 10, 2011 | Modified: May 31, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The file upload functionality in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2, when running on hosts with dangerous security settings, has unknown impact and attack vectors, possibly related to dangerous filenames.

Affected Software

Name Vendor Start Version End Version
Wordpress Wordpress 3.1 3.1
Wordpress Wordpress 3.2 3.2
Wordpress Wordpress 3.1.2 3.1.2
Wordpress Wordpress 3.1.1 3.1.1

References