CVE-2007-5105

Wordpress - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in wp-register.php in WordPress 2.0 and 2.0.1 allows remote attackers to inject arbitrary web script or HTML via the user_email parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Adrian Pastor · htmlwebappsphp
https://www.exploit-db.com/exploits/30602

Scores

EPSS 0.0168
EPSS Percentile 82.0%

Classification

CWE
CWE-79
Status draft

Affected Products (2)

wordpress/wordpress
wordpress/wordpress

Timeline

Published Sep 26, 2007
Tracked Since Feb 18, 2026