Hosts vulnerable to CVE-2019-9787
CVE-2019-9787 — severity high, CVSS 8.8 — 3 affected hosts indexed by QROS Explore.
About CVE-2019-9787
WordPress before 5.1.1 does not properly filter comment content, leading to Remote Code Execution by unauthenticated users in a default configuration. This occurs because CSRF protection is mishandled, and because Search Engine Optimization of A elements is performed incorrectly, leading to XSS. The
Showing 3 of 3 hosts, ranked by risk score.
ec2-3-20-134-2.us-east-2.compute.amazonaws.com (3.20.134.2)
United States · Dublin
3 open ports · 83 CVE · risk 98/100 · critical
http, ssh
ec2-3-37-192-205.ap-northeast-2.compute.amazonaws.com (3.37.192.205)
South Korea · Incheon
2 open ports · 137 CVE · risk 98/100 · critical
http
ec2-3-23-252-243.us-east-2.compute.amazonaws.com (3.23.252.243)
United States · Dublin
2 open ports · 150 CVE · risk 98/100 · critical
http
Search all CVE-2019-9787 hosts in Explore
Open in Explore →