CVE-2008-4671
WordPress MU < 2.6 - Cross-Site Scripting via s or ip_address Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-4671. PoCs published by Juan Galiana Lara.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in WordPress MU versions prior to 2.6. It includes example URLs demonstrating how an attacker could inject arbitrary script code via the 's' and 'ip_address' parameters.
Description
Cross-site scripting (XSS) vulnerability in wp-admin/wp-blogs.php in Wordpress MU (WPMU) before 2.6 allows remote attackers to inject arbitrary web script or HTML via the (1) s and (2) ip_address parameters.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in WordPress MU versions prior to 2.6. It includes example URLs demonstrating how an attacker could inject arbitrary script code via the 's' and 'ip_address' parameters.