← Volver a CVEs
CVE-2012-2404
N/ADescripcion
wp-comments-post.php in WordPress before 3.3.2 supports offsite redirects, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via unspecified vectors.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado4/21/2012
Ultima modificacion4/29/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
wordpress:wordpress
Debilidades (CWE)
CWE-79
Referencias
http://osvdb.org/81464(cve@mitre.org)
http://secunia.com/advisories/48957(cve@mitre.org)
http://secunia.com/advisories/49138(cve@mitre.org)
http://wordpress.org/news/2012/04/wordpress-3-3-2/(cve@mitre.org)
http://www.debian.org/security/2012/dsa-2470(cve@mitre.org)
http://www.securityfocus.com/bid/53192(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75092(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75202(cve@mitre.org)
http://core.trac.wordpress.org/changeset/20486/branches/3.3/wp-comments-post.php(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/81464(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/48957(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/49138(af854a3a-2127-422b-91ae-364da2661108)
http://wordpress.org/news/2012/04/wordpress-3-3-2/(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2012/dsa-2470(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/53192(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75092(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75202(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.