CVE-2010-5297

Source
https://cve.org/CVERecord?id=CVE-2010-5297
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2010-5297.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2010-5297
Downstream
Published
2014-01-21T01:55:03Z
Modified
2026-04-10T03:41:33.982630Z
Summary
[none]
Details

WordPress before 3.0.1, when a Multisite installation is used, permanently retains the "site administrators can add users" option once changed, which might allow remote authenticated administrators to bypass intended access restrictions in opportunistic circumstances via an add action after a temporary change.

References

Affected packages