[wp-trac] [WordPress Trac] #10735: CVE-2008-6767 patch: Only admin can upgrade wordpress

WordPress Trac wp-trac at lists.automattic.com
Mon Sep 7 10:31:14 UTC 2009


#10735: CVE-2008-6767 patch: Only admin can upgrade wordpress
-----------------------------+----------------------------------------------
 Reporter:  Derevko          |       Owner:           
     Type:  defect (bug)     |      Status:  new      
 Priority:  normal           |   Milestone:  2.9      
Component:  Upgrade/Install  |     Version:           
 Severity:  normal           |    Keywords:  has-patch
-----------------------------+----------------------------------------------
Changes (by scribu):

  * keywords:  => has-patch
  * milestone:  Unassigned => 2.9


Comment:

 You should use 'administrator' instead of 'level_10'.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/10735#comment:1>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list