PT-2006-2787 · Microsoft · Internet Explorer

Noam Rathaus

·

Published

2006-04-17

·

Updated

2008-09-05

·

CVE-2006-1796

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Wordpress versions 1.5.2 through 2.0.1
Description A cross-site scripting (XSS) issue exists in the paging links functionality, allowing remote attackers to inject arbitrary web script or HTML to Internet Explorer users via the REQUEST URI in the request URI.
Recommendations For Wordpress versions 1.5.2 through 2.0.1, update to a version after 2.0.1 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-1796

Affected Products

Internet Explorer