Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2146 (WordPress)

BugsAlert Home > CVE-2008-2146 (WordPress)
 
 

wp-includes/vars.php in Wordpress before 2.2.3 does not properly extract the current pafe from the PATH_INFO ($PHP_SELF), which allows remote attackers to bypass intended access restrictions for certain pages.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2146

Learn more about CVE-2008-2146 (WordPress)
 
Tags: cve-2008-2146 wordpress

Related Items

      Microsoft Word Two Code Execution Vulnerabilities

      FrSIRT - rPath Security Update Fixes Postfix Privilege Escalation Vulnerabilities

      CVE-2008-3741 (Drupal)

      OpenBSD BIND Query Port DNS Cache Poisoning

      FrSIRT - Wireshark Denial of Service and Memory Disclosure Vulnerabilities

      TROJ_WIMAD.AZ

      SugarCRM Community Edition Local File Disclosure Vulnerability

 

Pixel