CVE-2013-2173
wp-includes/class-phpass.php in WordPress 3.5.1, when a password-protected post exists, allows remote attackers to cause
wp-includes/class-phpass.php in WordPress 3.5.1, when a password-protected post exists, allows remote attackers to cause a denial of service (CPU consumption) via a crafted value of a certain wp-postpass cookie.
MEDIUM · CVSS 4.3
EPSS 0.01677
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0