Looking for the vulnerability index of Invicti's legacy products?
WordPress 4.0.x Same Origin Method Execution (SOME) Vulnerability (4.0 - 4.0.10) - Vulnerability Database

WordPress 4.0.x Same Origin Method Execution (SOME) Vulnerability (4.0 - 4.0.10)

Description

WordPress is prone to same origin method execution (SOME) vulnerability. The impact of a SOME attack is similar to the impact of cross-site scripting, though there are some important and distinguishing exploitation restrictions. An attacker may leverage this issue to hijack dangerous web functionality and even exfiltrate sensitive user data. WordPress versions 4.0.x ranging from 4.0 and up to (and including) 4.0.10 are vulnerable.

Remediation

Update to WordPress version 4.0.11 or latest