Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-1732

Опубликовано: 28 мар. 2007
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 3.5

Описание

Cross-site scripting (XSS) vulnerability in an mt import in wp-admin/admin.php in WordPress 2.1.2 allows remote authenticated administrators to inject arbitrary web script or HTML via the demo parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: another researcher disputes this issue, stating that this is legitimate functionality for administrators. However, it has been patched by at least one vendor

РелизСтатусПримечание
dapper

ignored

end of life
devel

ignored

edgy

ignored

end of life, was needs-triage
feisty

ignored

end of life, was needs-triage
gutsy

ignored

end of life, was needs-triage
hardy

ignored

intrepid

ignored

jaunty

ignored

karmic

ignored

upstream

ignored

Показывать по

Ссылки на источники

EPSS

Процентиль: 52%
0.00292
Низкий

3.5 Low

CVSS2

Связанные уязвимости

nvd
больше 18 лет назад

Cross-site scripting (XSS) vulnerability in an mt import in wp-admin/admin.php in WordPress 2.1.2 allows remote authenticated administrators to inject arbitrary web script or HTML via the demo parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: another researcher disputes this issue, stating that this is legitimate functionality for administrators. However, it has been patched by at least one vendor

debian
больше 18 лет назад

Cross-site scripting (XSS) vulnerability in an mt import in wp-admin/a ...

github
больше 3 лет назад

** DISPUTED ** Cross-site scripting (XSS) vulnerability in an mt import in wp-admin/admin.php in WordPress 2.1.2 allows remote authenticated administrators to inject arbitrary web script or HTML via the demo parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: another researcher disputes this issue, stating that this is legitimate functionality for administrators. However, it has been patched by at least one vendor.

EPSS

Процентиль: 52%
0.00292
Низкий

3.5 Low

CVSS2