Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-5493
Description:wp-includes/ms-functions.php in the Multisite WordPress API in WordPress before 4.7.1 does not properly choose random numbers for keys, which makes it easier for remote attackers to bypass intended access restrictions via a crafted (1) site signup or (2) user signup.
Test IDs: 1.3.6.1.4.1.25623.1.0.890813  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-5493
BugTraq ID: 95401
http://www.securityfocus.com/bid/95401
Debian Security Information: DSA-3779 (Google Search)
http://www.debian.org/security/2017/dsa-3779
https://wpvulndb.com/vulnerabilities/8721
http://www.openwall.com/lists/oss-security/2017/01/14/6
http://www.securitytracker.com/id/1037591




© 1998-2025 E-Soft Inc. All rights reserved.