Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-2627

Опубликовано: 11 мая 2007
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 6.8

Описание

Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, when custom 404 pages that call get_sidebar are used, allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF), a different vulnerability than CVE-2007-1622.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

edgy

ignored

end of life, was needs-triage
feisty

ignored

end of life, was needs-triage
gutsy

not-affected

hardy

not-affected

intrepid

not-affected

jaunty

not-affected

karmic

not-affected

upstream

released

2.2.2

Показывать по

Ссылки на источники

EPSS

Процентиль: 72%
0.00753
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
около 18 лет назад

Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, when custom 404 pages that call get_sidebar are used, allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF), a different vulnerability than CVE-2007-1622.

debian
около 18 лет назад

Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, when custom 404 pages that call get_sidebar are used, allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF), a different vulnerability than CVE-2007-1622.

EPSS

Процентиль: 72%
0.00753
Низкий

6.8 Medium

CVSS2