Back to search
CVE-2009-1030
Published: Mar 20, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in the choose_primary_blog function in wp-includes/wpmu-functions.php in WordPress MU (WPMU) before 2.7 allows remote attackers to inject arbitrary web script or HTML via the HTTP Host header.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
34075
vdb-entry
x_refsource_BID
1021838
vdb-entry
x_refsource_SECTRACK
wordpressmu-wpmufunctions-xss(49184)
vdb-entry
x_refsource_XF
20090310 [ISecAuditors Security Advisories] WordPress MU HTTP Header XSS Vulnerability
mailing-list
x_refsource_BUGTRAQ
HPSBUX02514
vendor-advisory
x_refsource_HP
8196
exploit
x_refsource_EXPLOIT-DB
SSRT100010
vendor-advisory
x_refsource_HP
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now