WordPress before 4.5.3 allows remote attackers to obtain sensitive revision-history information by leveraging the ability to read a post, related to wp-admin/includes/ajax-actions.php and wp-admin/revision.php.
References
Configurations
Information
Published : 2016-06-29 07:10
Updated : 2016-11-29 19:07
NVD link : CVE-2016-5835
Mitre link : CVE-2016-5835
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
wordpress
- wordpress