ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2007-1244”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2007-1244
Published
2007-03-03
CVSS:
-
ShadowTrackr CVSS:
0.0
Summary:
Cross-site request forgery (CSRF) vulnerability in the AdminPanel in WordPress 2.1.1 and earlier allows remote attackers to perform privileged actions as administrators, as demonstrated using the delete action in wp-admin/post.php. NOTE: this issue can be leveraged to perform cross-site scripting (XSS) attacks and steal cookies via the post parameter.