CVE-2004-1584
EPSS 11.2%
描述
CRLF injection vulnerability in wp-login.php in WordPress 1.2 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the text parameter.
如何修補 CVE-2004-1584
要修補 CVE-2004-1584,請將受影響套件升級到下列已修補版本。
- Debian/wordpress—升級至 1.2.1-1.1 或更新版本
CVE-2004-1584 正在被利用嗎?
中等 — EPSS 為 11.2%,可持續追蹤但非最高優先。
受影響套件(1)
- from 0, < 1.2.1-1.1