Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers to enumerate valid usernames. NOTE: the vendor reportedly disputes the significance of this issue, indicating that the behavior exists for "user convenience."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WordPress口令重置用户名枚举漏洞
Vulnerability Description
WordPress是一款免费的论坛Blog系统。 WordPress在使用口令重置界面请求新口令的时候,对于已有的和不存在的用户名也会返回不同的结果。
CVSS Information
N/A
Vulnerability Type
N/A