Multiple cross-site scripting (XSS) vulnerabilities in template-functions-post.php in WordPress 1.5 and earlier allow remote attackers to execute arbitrary commands via the (1) content or (2) title of the post.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=111336102101571&w=2 | mailing list |
http://security.gentoo.org/glsa/glsa-200506-04.xml | patch vendor advisory |
http://bugs.gentoo.org/show_bug.cgi?id=88926 | |
http://wordpress.org/support/topic.php?id=30721 | patch vendor advisory |