Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Gentoo: GLSA 200603-01 Normal: WordPress SQL Injection Threat

gentoo
Calendar Grey March 4, 2006
Dist Gentoo Esm H88
A security flaw in WordPress SQL injection identified in Gentoo GLSA 200603-01, impacting all releases up to 1.5.2.
WordPress is vulnerable to an SQL injection vulnerability.

Summary

Gentoo Linux Security Advisory GLSA 200603-01 https://security.gentoo.org/ Severity: Normal Title: WordPress: SQL injection vulnerability Date: March 04, 2006 Bugs: #121661 ID: 200603-01

Synopsis ======= WordPress is vulnerable to an SQL injection vulnerability.
Background ========= WordPress is a PHP and MySQL based content management and publishing system.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-apps/wordpress <= 1.5.2 >= 2.0.1
========== Patrik Karlsson reported that WordPress 1.5.2 makes use of an insufficiently filtered User Agent string in SQL queries related to comments posting. This vulnerability was already fixed in the 2.0-serie...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here