[Bug 245211] Wordpress 2.2(.1): SQL injection, XSS, unrestricted file upload vulnerabilities

bugzilla at redhat.com bugzilla at redhat.com
Wed Jul 4 17:20:44 UTC 2007


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: Wordpress 2.2(.1): SQL injection, XSS, unrestricted file upload vulnerabilities


https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=245211


ville.skytta at iki.fi changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
            Summary|Wordpress 2.2: SQL          |Wordpress 2.2(.1): SQL
                   |injection, XSS              |injection, XSS, unrestricted
                   |vulnerabilities             |file upload vulnerabilities




------- Additional Comments From ville.skytta at iki.fi  2007-07-04 13:20 EST -------
Additional unrestricted file upload issues:
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3543
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3544

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the Fedora-security-list mailing list