wordpress

412 tracked vulnerabilities.

CVE-2005-2107
WordPress <= 1.5.1.2 - Cross-Site Scripting via p or comment Parameter
Jul 05, 2005
EPSS 0.01
CVE-2005-2108
WordPress <= 1.5.1.2 - SQL Injection via HTTP_RAW_POST_DATA
Jul 05, 2005
EPSS 0.01
CVE-2005-2109
WordPress <= 1.5.1.2 - Unauthenticated Password Reset Email Manipulation via Message Variable
Jul 05, 2005
EPSS 0.01
CVE-2005-2110
WordPress <1.5.1.2 - Info Disclosure
Jul 05, 2005
EPSS 0.01
CVE-2005-1810
WordPress 1.5.1 - SQL Injection via Cat Parameter
Jun 01, 2005
EPSS 0.02
CVE-2005-1687
WordPress 1.5 and earlier - SQL Injection via tb_id Parameter
May 20, 2005
EPSS 0.01
CVE-2005-1688 MEDIUM
WordPress < 1.5 - Information Disclosure via Direct Request to Theme and Admin Files
May 20, 2005
CVSS 5.3
EPSS 0.01
CVE-2005-1102
WordPress < 1.5 - Cross-Site Scripting via Post Content or Title
May 02, 2005
EPSS 0.01
CVE-2004-1559
WordPress 1.2 - Cross-Site Scripting via Multiple Parameters
Dec 31, 2004
EPSS 0.01
CVE-2004-1584
WordPress 1.2 - HTTP Response Splitting
Dec 31, 2004
EPSS 0.16
CVE-2003-1599
WordPress 0.70 - Remote Code Execution via wp-links/links.all.php $abspath Variable
Oct 27, 2014
EPSS 0.01
CVE-2003-1598
WordPress < 0.7 - SQL Injection via Posts Variable
Oct 01, 2014
EPSS 0.01