diff --git a/data/wp_vulns.xml b/data/wp_vulns.xml index 9e1d9482..a7f8c224 100644 --- a/data/wp_vulns.xml +++ b/data/wp_vulns.xml @@ -1846,7 +1846,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -1948,7 +1948,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -1956,7 +1956,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 104691 2010-5297 @@ -2028,7 +2028,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2036,7 +2036,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2092,7 +2092,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2100,7 +2100,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2170,7 +2170,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2178,7 +2178,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2234,7 +2234,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2242,7 +2242,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2305,7 +2305,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2313,7 +2313,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2369,7 +2369,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2377,7 +2377,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2440,7 +2440,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2448,7 +2448,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2504,7 +2504,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2512,7 +2512,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2575,7 +2575,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2583,7 +2583,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2639,7 +2639,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2647,7 +2647,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2710,7 +2710,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2718,7 +2718,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2781,7 +2781,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2789,7 +2789,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2852,7 +2852,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2860,7 +2860,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2916,7 +2916,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2924,7 +2924,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -2980,7 +2980,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -2988,7 +2988,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3051,7 +3051,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3059,7 +3059,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3129,7 +3129,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3137,7 +3137,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3193,7 +3193,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3201,7 +3201,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3264,7 +3264,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3272,7 +3272,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3336,7 +3336,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3344,7 +3344,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3400,7 +3400,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3408,7 +3408,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3464,7 +3464,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3472,7 +3472,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3535,7 +3535,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3543,7 +3543,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3592,7 +3592,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3600,7 +3600,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3656,7 +3656,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3664,7 +3664,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3720,7 +3720,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3728,7 +3728,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3784,7 +3784,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3792,7 +3792,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3862,7 +3862,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3870,7 +3870,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -3933,7 +3933,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -3941,7 +3941,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4012,7 +4012,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4020,7 +4020,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4087,7 +4087,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4095,7 +4095,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4144,7 +4144,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4152,7 +4152,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4208,7 +4208,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4216,7 +4216,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4272,7 +4272,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4280,7 +4280,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4329,7 +4329,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4337,7 +4337,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4386,7 +4386,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4394,7 +4394,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4450,7 +4450,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4458,7 +4458,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4521,7 +4521,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4529,7 +4529,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4592,7 +4592,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4600,7 +4600,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4663,7 +4663,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4671,7 +4671,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4734,7 +4734,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4742,7 +4742,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4812,7 +4812,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4820,7 +4820,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4884,7 +4884,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4892,7 +4892,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297 @@ -4956,7 +4956,7 @@ 3.0.2 - wp-includes/capabilities.php when a Multisite configuration is used, does not require the Super Admin role for the delete_users capability, which allows remote authenticated administrators to bypass intended access restrictions via a delete action. + wp-includes/capabilities.php Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5296 @@ -4964,7 +4964,7 @@ 3.0.2 - When a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change. + Remote Authenticated Administrator Bypass Intended Access Restrictions via a Delete Action 2010-5297