CVE

Id
76050  
CVE No.
CVE-2014-8749  
Status
Candidate  
Description
Server-side request forgery (SSRF) vulnerability in admin/htaccess/bpsunlock.php in the BulletProof Security plugin before .51.1 for WordPress allows remote attackers to trigger outbound requests that authenticate to arbitrary databases via the dbhost parameter.  
Phase
Assigned (20141013)  
Votes
None (candidate not yet proposed)  
Comments