CVE-2014-0165 | WordPress up to 3.7.1/3.8.1 Plupload publish_post access control (Nessus ID 73471 / ID 12914)
A vulnerability, which was classified as problematic, has been found in WordPress up to 3.7.1/3.8.1. This affects an unknown function of the component Plupload. Performing a manipulation of the argument publish_post results in improper access controls.
This vulnerability is reported as CVE-2014-0165. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.