In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API.
We have discovered 427,032 live websites that are affected by CVE-2017-9062.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 427,032 live websites (4.91% of WordPress install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 314 versions ( 48% of all versions) |
| 72,696 websites | |
| 64,970 websites | |
| 30,875 websites | |
| 27,987 websites | |
| 22,601 websites | |
| 21,374 websites | |
| 19,220 websites | |
| 17,904 websites | |
| 14,227 websites | |
| 9,922 websites |
| .com | 150,098 websites |
| .it | 42,220 websites |
| .ru | 18,966 websites |
| .de | 15,353 websites |
| .org | 15,200 websites |
| .net | 14,073 websites |
| .pl | 12,800 websites |
| .co.uk | 11,969 websites |
| .nl | 10,331 websites |
| .com.au | 7,468 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****.com | *,*** | ||
| ************.org | *,*** | ||
| ********.eu | *,*** | ||
| ********************.ru | *,*** | ||
| ****************.com | *,*** | ||
| *******.**.ca | *,*** | ||
| **********.com | **,*** | ||
| ***************.org | **,*** | ||
| ********.gr | **,*** | ||
| ***********.**.za | **,*** |