Description
WordPress is prone to multiple vulnerabilities, including directory traversal, security bypass and Denial of Service vulnerabilities. Exploiting these issues can allow an attacker to obtain sensitive information that could aid in launching further attacks, to perform otherwise restricted actions and subsequently list certain metadata information of other users or to cause a Denial of Service (application crash), thus denying service to legitimate users. WordPress version 2.0.4 is vulnerable.
Remediation
Update to WordPress version 2.0.5 or latest
References
Related Vulnerabilities
SharePoint Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-0251)
MediaWiki Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2021-36125)
WordPress Plugin Contact Form Unspecified Vulnerability (1.1.9)
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3383)