CVE-2006-4028: Critical severity WordPress vulnerability
Multiple unspecified vulnerabilities in WordPress before 2.0.4 have unknown impact and remote attack vectors. NOTE: due to lack of details, it is not clear how these issues are different from CVE-2006-3389 and CVE-2006-3390, although it is likely that 2.0.4 addresses an unspecified issue related to "Anyone can register" functionality (user registration for guests).
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4028?
The severity of CVE-2006-4028 is currently unspecified due to a lack of detailed information regarding its impact.
How do I fix CVE-2006-4028?
To fix CVE-2006-4028, upgrade your WordPress installation to at least version 2.0.4.
What versions of WordPress are affected by CVE-2006-4028?
CVE-2006-4028 affects WordPress versions 2.0, 2.0.1, 2.0.2, and 2.0.3.
Can CVE-2006-4028 be exploited remotely?
Yes, CVE-2006-4028 has remote attack vectors, which means it can potentially be exploited by attackers over the internet.
Are there any known exploits for CVE-2006-4028?
Currently, there are no publicly known exploits specifically documented for CVE-2006-4028.