CVE-2014-0165 | WordPress up to 3.7.1/3.8.1 Publish Post publish_post access control (Nessus ID 73471 / ID 12914)
A vulnerability classified as critical was found in WordPress up to 3.7.1/3.8.1. The impacted element is an unknown function of the component Publish Post Handler. Such manipulation of the argument publish_post leads to improper access controls.
This vulnerability is documented as CVE-2014-0165. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.