Release DateJan 05, 2012 |
Severitymedium |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt against a Cross Site Scripting vulnerability in WordPress.A vulnerability has been reported in WordPress that may allow an attacker to execute shell commands on a vulnerable system. An attacker may include shell commands by supplying an injection string through the URL. |
Affected ProductsWordPress series 2.1.x and 2.0.x |
Recommended ActionsCurrently we are not aware of any vendor supplied patch for this issue. |
Coverage IPS
VCM |
Reference/shttp://chxsecurity.org/advisories/adv-1-mid.txt |