20061227 WordPress Persistent XSSmailing list
http://marc.info/?l=full-disclosure&m=116722128631087&w=2 CVE-2006-6808
WordPress Core 1.x/2.0.x - 'template.php' HTML Injection
Record summary
CVE-2006-6808 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.
Description
Cross-site scripting (XSS) vulnerability in wp-admin/templates.php in WordPress 2.0.5 allows remote attackers to inject arbitrary web script or HTML via the file parameter. NOTE: some sources have reported this as a vulnerability in the get_file_description function in wp-admin/admin-functions.php.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWordPress Core 1.x/2.0.x - 'template.php' HTML InjectionExploitDB exploitby David KierznowskiNot analyzed1 file
References
10michaeldaw.org
http://michaeldaw.org/ 23587Third-party advisory
http://secunia.com/advisories/23587 23741Third-party advisory
http://secunia.com/advisories/23741 GLSA-200701-10Vendor advisory
http://security.gentoo.org/glsa/glsa-200701-10.xml trac.wordpress.orgConfirmation
http://trac.wordpress.org/changeset/4665 21782vdb entry
http://www.securityfocus.com/bid/21782 ADV-2006-5191vdb entry
http://www.vupen.com/english/advisories/2006/5191 wordpress-getfiledescription-xss(31133)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/31133 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-6808