Sploitus

CVE-2007-6013

No indexed exploits for CVE-2007-6013 yet

Wordpress 1.5 through 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows attackers to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.

Affected products
Wordpress
Wordpress
≤ 2.3.1
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
3.3% (87th percentile)
Weakness
CWE-327
NVD status
Modified
Published
2007-11-19
CVE-2007-6013 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2007-6013 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2007-6013 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.