This application requires Javascript for optimal performance.

WordPress.Wptitle.XSS

Release Date

Jan 05, 2012

Severity

medium

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against a Cross Site Scripting vulnerability in WordPress.

A vulnerability has been reported in WordPress that may allow an attacker to execute shell commands on a vulnerable system. An attacker may include shell commands by supplying an injection string through the URL.

Affected Products

WordPress series 2.1.x and 2.0.x

Recommended Actions

Currently we are not aware of any vendor supplied patch for this issue.

Coverage

IPS
VCM

Reference/s

http://chxsecurity.org/advisories/adv-1-mid.txt

Reference: VID-30562