CVE-2016-10972
CRITICAL EXPLOITED IN THE WILD NUCLEITagdiv Newspaper < 6.7.2 - Improper Privilege Management
Title source: ruleDescription
The newspaper theme before 6.7.2 for WordPress has a lack of options access control via td_ajax_update_panel.
Exploits (1)
Nuclei Templates (1)
Newspaper Theme 6.4–6.7.1 - Privilege Escalation
CRITICALby pussycat0x
FOFA:
body="wp-content/themes/mTheme-Unus/"
Scores
CVSS v3
9.8
EPSS
0.6305
EPSS Percentile
98.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
VulnCheck KEV
2022-12-30
InTheWild.io
2023-01-02
CWE
CWE-269
Status
published
Products (1)
tagdiv/newspaper
< 6.7.2
Published
Sep 16, 2019
Tracked Since
Feb 18, 2026