1 results (0.018 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

Cross-site scripting (XSS) vulnerability in index.php in the WordPress Classic 1.5 theme in WordPress before 2.1.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en index.php del tema WordPress Classic 1.5 para WordPress permite a atacantes remotos inyectar secuencias de comandos web o HTML de su elección mediante el PATH_INFO (PHP_SELF). • http://osvdb.org/38450 http://securityvulns.ru/Rdocument751.html http://websecurity.com.ua/1234 http://www.securityfocus.com/archive/1/477253/100/0/threaded • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •