Description
WordPress is prone to a security bypass vulnerability because the application fails to properly perform user-profile checks. Exploiting this issue could allow an attacker to perform otherwise restricted actions and subsequently publish posts under certain circumstances. Note that successful exploitation requires 'Contributor-level' privileges. WordPress versions prior to 3.1.2 are vulnerable.
Remediation
Update to WordPress version 3.0.6, 3.1.2 or latest
References
Related Vulnerabilities
WordPress Plugin All Post Contact Form Arbitrary File Upload (1.1.4)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2019-9637)
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2024-25608)
WordPress Plugin Video Gallery /w YouTube, Vimeo Arbitrary File Upload (8.48)