CVE-2007-4894

WordPress < 2.2.3 and WordPress MU < 1.2.5a - SQL Injection via XMLRPC Pingback Post Type Parameter

Title source: llm
STIX 2.1

Description

Multiple SQL injection vulnerabilities in Wordpress before 2.2.3 and Wordpress multi-user (MU) before 1.2.5a allow remote attackers to execute arbitrary SQL commands via the post_type parameter to the pingback.extensions.getPingbacks method in the XMLRPC interface, and other unspecified parameters related to "early database escaping" and missing validation of "query string like parameters."

References (9)

Core 9
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/3132
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/36578
Mailing List vendor-advisory x_refsource_fedora
http://fedoranews.org/updates/FEDORA-2007-214.shtml
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26771
Product x_refsource_confirm
http://trac.wordpress.org/ticket/4770
Issue Tracking x_refsource_misc
https://bugzilla.redhat.com/show_bug.cgi?id=285831
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26796

Scores

EPSS 0.0403
EPSS Percentile 88.6%

Details

CWE
CWE-89
Status published
Products (31)
wordpress/wordpress 0.6.2
wordpress/wordpress 0.6.2.1
wordpress/wordpress 0.7
wordpress/wordpress 0.71
wordpress/wordpress 1.2
wordpress/wordpress 1.2.1
wordpress/wordpress 1.2.2
wordpress/wordpress 1.5
wordpress/wordpress 1.5.1
wordpress/wordpress 1.5.1.2
... and 21 more
Published Sep 14, 2007
Tracked Since Feb 18, 2026