Total vulnerabilities in the database
Multiple cross-site scripting (XSS) vulnerabilities in WordPress 2.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the popuptitle parameter to (1) wp-admin/post.php or (2) wp-admin/page-new.php.
Software | From | Fixed in |
---|---|---|
WordPress / wordpress | - | 2.0.9.x |