/wordpress_DoS

CVE-2020-25518, CVE-2020-25519

WordPress 4.9.8 is vulnerable to DoS Attacks.

[Additional Information] We found a Denial of Service (DoS) in WordPress version 4.9.8. An unauthenticated remote user can perform a series of requests on the vulnerable pages, resulting in increased processing, swap and disk I/O on the server. This processing increase turns the web application unavailable. https://127.0.0.1/wp-admin/install.php

[VulnerabilityType Other] Denial of Service (DoS)
[Vendor of Product] WordPress
[Researcher] Guilherme Rubert - XLabs Security
[Affected Product Code Base] WordPress v. 4.9.8
[Reference] https://br.wordpress.com/
https://www.xlabs.com.br

WordPress 5.5 is vulnerable to DoS Attacks.

[Additional Information] We found a Denial of Service (DoS) in WordPress version 5.5. An unauthenticated remote user can perform a series of requests on the vulnerable pages, resulting in increased processing, swap and disk I/O on the server. This processing increase turns the web application unavailable. https://127.0.0.1/wp-admin/install-helper.php

[VulnerabilityType Other] Denial of Service (DoS)
[Vendor of Product] WordPress
[Affected Product Code Base] WordPress v. 5.5
[Researcher] Guilherme Rubert - XLabs Security
[Reference] https://br.wordpress.com/
https://www.xlabs.com.br