Gentoo Linux Security Advisory GLSA 200703-23
https://security.gentoo.org/
Severity: Low
Title: WordPress: Multiple vulnerabilities
Date: March 20, 2007
Bugs: #168529
ID: 200703-23
Synopsis
=======
Wordpress contains several cross-site scripting, cross-site request
forgery and information leak vulnerabilities.
Background
=========
WordPress is a popular personal publishing platform with a web
interface.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 www-apps/wordpress <= 2.1.2 Vulnerable!
-------------------------------------------------------------------
NOTE: Certain packages are still vulnerable. Users should migrate
to another package if one is available or wait for the
existing packages to be marked stable by their
architecture maintainers.
==========
WordPress contains cross-site scripting or cross-site scripting forgery
vulnerabilities reported by:
* g30rg3_x in the "year" parameter of the wp_title() function
* Alexander Concha in the "demo" paramet...
style>.gentoo_availability{display:block;}
Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3760104_4c9dbbdde36eef04251a4ced7eac4df9 on line 11
Get the latest Linux and open source security news straight to your inbox.