Vulnerabilities > CVE-2006-0733 - Unspecified vulnerability in Wordpress 2.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN wordpress
exploit available
Summary
Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows remote attackers to inject arbitrary web script or HTML via scriptable attributes such as (1) onfocus and (2) onblur in the "author's website" field. NOTE: followup comments to the researcher's web log suggest that this issue is only exploitable by the same user who injects the XSS, so this might not be a vulnerability
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | WordPress 2.0 Comment Post HTML Injection Vulnerability. CVE-2006-0733. Webapps exploit for php platform |
id | EDB-ID:27227 |
last seen | 2016-02-03 |
modified | 2006-02-15 |
published | 2006-02-15 |
reporter | imei |
source | https://www.exploit-db.com/download/27227/ |
title | WordPress 2.0 - Comment Post HTML Injection Vulnerability |