CVE-2011-5270
wp-admin/press-this.php in WordPress before 3.0.6 does not enforce the publish_posts capability requirement, which allow
wp-admin/press-this.php in WordPress before 3.0.6 does not enforce the publish_posts capability requirement, which allows remote authenticated users to perform publish actions by leveraging the Contributor role.
MEDIUM · CVSS 4
EPSS 0.00506
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0