Known vulnerabilities in wordpress (Debian package) 4.8+dfsg-1 - page 2

Vendor: Debian
Version: 4.8+dfsg-1
Software CPE: cpe:2.3:o:debian:wordpress_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 25
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting wordpress (Debian package) version 4.8+dfsg-1 wordpress (Debian package) 4.8+dfsg-1 is affected by 25 vulnerabilities: 1 high, 6 medium, 18 low Critical High Medium Low

Vulnerabilities (25)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU27442 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11029
CWE-79 Medium
No
No
4.7.5+dfsg-2+deb9u6, 5.0.4+dfsg1-1+deb10u2, 5.4.1+dfsg1-1 29.04.2020 SB2020042920
SB2020050617
SB2020043039
and 1 more
#VU27441 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11030
CWE-79 Low
No
No
4.7.5+dfsg-2+deb9u6, 5.0.4+dfsg1-1+deb10u2, 5.4.1+dfsg1-1 29.04.2020 SB2020042920
SB2020050617
SB2020043039
and 1 more
#VU27439 - Improper Access Control
CVE-2020-11028
CWE-284 Low
No
No
4.7.5+dfsg-2+deb9u6, 5.0.4+dfsg1-1+deb10u2, 5.4.1+dfsg1-1 29.04.2020 SB2020042920
SB2020050617
SB2020043039
and 1 more
#VU27438 - Weak password recovery mechanism
CVE-2020-11027
CWE-640 High
Public exploit available
No
4.7.5+dfsg-2+deb9u6, 5.0.4+dfsg1-1+deb10u2, 5.4.1+dfsg1-1 29.04.2020 SB2020042920
SB2020050617
SB2020043039
and 1 more
#VU21786 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-17674
CWE-79 Low
No
No
4.7.5+dfsg-2+deb9u6, 5.0.4+dfsg1-1+deb10u1, 5.0.4+dfsg1-1+deb10u2, 5.4.1+dfsg1-1 15.10.2019 SB2019101505
SB2020010818
SB2020050617


Showing elements 21 - 40 out of 25