ShadowTrackr
Home
Platform
Use cases
Pricing
About
Blog
Resources
API
Documentation
FAQ
Support
Log in
Search the CVE vulnerability database
Look up vulnerabilities by software, product or CVE number.
Search
Vulnerability management
ShadowTrackr CVSS score
← Back to results
CVE-2011-3818
WordPress 2.9.2 and 3.0.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by wp-admin/includes/user.php and certain other files.
-
CVSS
0.0
ShadowTrackr
NO
CISA KEV
-
NCSC.nl
Patch Status
Unavailable
Change Log
Date
Source
Changes
Score
2026-07-21
PoC
E: U→P
0.0 → 0.0
2026-07-21
cve.org
initial, patch: Unavailable
0.0
References:
CVE.org
·
NVD
·
PoC
Affected Software
Vendor
Product
Version
wordpress
wordpress
2.9.2
wordpress
wordpress
3.0.4
Published: 2011-09-24
×