CVE-2007-4544 Information

Description

Cross-site scripting (XSS) vulnerability in wp-newblog.php in WordPress multi-user (MU) 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the weblog_id parameter (Username field).

Reference

http://osvdb.org/38442 http://securityvulns.ru/Rdocument875.html http://websecurity.com.ua/1269/ http://www.securityfocus.com/archive/1/482006/100/0/threaded

Share on: