Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0204 (Math Comment Spam Protection Plugin)

BugsAlert Home > CVE-2008-0204 (Math Comment Spam Protection Plugin)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in math-comment-spam-protection.php in the Math Comment Spam Protection 2.1 and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) mcsp_opt_msg_no_answer or (2) mcsp_opt_msg_wrong_answer parameter to wp-admin/options-general.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0204

Learn more about CVE-2008-0204 (Math Comment Spam Protection Plugin)
 
Tags: cve-2008-0204 math comment spam protection plugin

Related Items

      CVE-2007-6440 (Wireshark)

      Debian: New mono packages fix integer overflow

      Vastal I-Tech Shaadi Zone 1.0.9 (tage) SQL Injection Vulnerability

      Scalable Public Key Infrastructure for both OpenSWAN and OpenVPN

      Acidcat CMS Multiple Vulnerabilities

      Debian: New inotify-tools packages fix arbitrary code

      CVE-2008-4820 (flash_player)

 

Pixel