Back to search
CVE-2017-1001000
Published: Apr 3, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
The register_routes function in wp-includes/rest-api/endpoints/class-wp-rest-posts-controller.php in the REST API in WordPress 4.7.x before 4.7.2 does not require an integer identifier, which allows remote attackers to modify arbitrary pages via a request for wp-json/wp/v2/posts followed by a numeric value and a non-numeric value, as demonstrated by the wp-json/wp/v2/posts/123?id=123helloworld URI.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://codex.wordpress.org/Version_4.7.2
x_refsource_CONFIRM
https://gist.github.com/leonjza/2244eb15510a0687ed93160c623762ab
x_refsource_MISC
https://wordpress.org/news/2017/01/wordpress-4-7-2-security-release/
x_refsource_CONFIRM
[oss-security] 20170210 Re: Asking for a CVE id for the WordPress Privilege Escalation vulnerability (4.7/4.7.1)
mailing-list
x_refsource_MLIST
1037731
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now