Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WordPress PHP Code Execution and Cross-Site Scripting

BugsAlert Home > WordPress PHP Code Execution and Cross-Site Scripting
 
 

Two vulnerabilities have been reported in WordPress, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, and to compromise a vulnerable system.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/29965/

Learn more about WordPress PHP Code Execution and Cross-Site Scripting
 
Tags: wordpress php code execution cross-site scripting

Related Items

      Cyber Criminals Target Firefox Users

      CVE-2008-2577 (bea_product_suite, webloic_server_component)

      rPath update for cups, poppler, and tetex

      Take a look at NetLabel Tools 0.18

      Mandriva: Subject: [Security Announce] [ MDVSA-2008:200 ] ed

      Wordpress user_login Column SQL Truncation Vulnerability

      CVE-2007-6425 (HP-UX)

 

Pixel