ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2012-0782”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2012-0782
Published
2012-01-30
CVSS:
-
ShadowTrackr CVSS:
0.0
Summary:
Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dbhost, (2) dbname, or (3) uname parameter. NOTE: the vendor disputes the significance of this issue; also, it is unclear whether this specific XSS scenario has security relevance