CVE-2007-2714

Akismet WordPress Plugin <2.0.2 akismet.php - Unspecified Vulnerability

Title source: manual
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-2714. PoCs published by David Kierznowski.

AI-analyzed exploit summary This exploit leverages a cross-site scripting (XSS) vulnerability in the WordPress Akismet plugin by injecting malicious JavaScript via the '_wp_http_referer' parameter. The payload executes an alert with the document cookie, demonstrating the vulnerability.

Description

Unspecified vulnerability in akismet.php in Matt Mullenweg Akismet before 2.0.2, a WordPress plugin, has unknown impact and attack vectors.

Exploits (1)

exploitdb WORKING POC VERIFIED
by David Kierznowski · htmlwebappsphp
https://www.exploit-db.com/exploits/30036

This exploit leverages a cross-site scripting (XSS) vulnerability in the WordPress Akismet plugin by injecting malicious JavaScript via the '_wp_http_referer' parameter. The payload executes an alert with the document cookie, demonstrating the vulnerability.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: WordPress Akismet plugin (version unspecified, likely older versions)
Auth required
Prerequisites: Access to a WordPress admin session with the ability to submit the form · Akismet plugin installed and vulnerable version in use
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Various Sources x_refsource_misc
http://michaeldaw.org/alerts/alert-140507/
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/23965
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/34338
Mailing List mailing-list x_refsource_fulldisc
http://lists.grok.org.uk/pipermail/full-disclosure/2007-May/062980.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/37290

Scores

EPSS 0.1121
EPSS Percentile 95.4%

Details

Status published
Products (1)
matt_mullenweg/akismet
Published May 16, 2007
Tracked Since Feb 18, 2026