Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Gentoo Linux GLSA-200606-08 High Risk WordPress Command Execution

gentoo
Calendar Grey June 9, 2006
Dist Gentoo Esm H88
Gentoo alert regarding vulnerability in WordPress command execution. Upgrade to the newest release to reduce exposure to critical security threats.
WordPress fails to sufficiently check the format of cached username data.

Summary

Gentoo Linux Security Advisory GLSA 200606-08 https://security.gentoo.org/ Severity: High Title: WordPress: Arbitrary command execution Date: June 09, 2006 Bugs: #134397 ID: 200606-08

Synopsis ======= WordPress fails to sufficiently check the format of cached username data.
Background ========= WordPress is a PHP and MySQL based content management and publishing system.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-apps/wordpress < 2.0.3 >= 2.0.3
========== rgod discovered that WordPress insufficiently checks the format of cached username data.
Impact ===== An attacker could exploit this vulnerability to execute arbitrary commands by sending a speci...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns


Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/70798_4c9dbbdde36eef04251a4ced7eac4df9 on line 11

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here