Gentoo Linux Security Advisory GLSA 200606-08
https://security.gentoo.org/
Severity: High
Title: WordPress: Arbitrary command execution
Date: June 09, 2006
Bugs: #134397
ID: 200606-08
Synopsis
=======
WordPress fails to sufficiently check the format of cached username
data.
Background
=========
WordPress is a PHP and MySQL based content management and publishing
system.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 www-apps/wordpress < 2.0.3 >= 2.0.3
==========
rgod discovered that WordPress insufficiently checks the format of
cached username data.
Impact
=====
An attacker could exploit this vulnerability to execute arbitrary
commands by sending a speci...
style>.gentoo_availability{display:block;}
Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/70798_4c9dbbdde36eef04251a4ced7eac4df9 on line 11
Get the latest Linux and open source security news straight to your inbox.