Description
Multiple cross-site scripting (XSS) vulnerabilities in template-functions-post.php in WordPress 1.5 and earlier allow remote attackers to execute arbitrary commands via the (1) content or (2) title of the post.
Remediation
References
Related Vulnerabilities
TYPO3 Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-23503)
WordPress Plugin Events Shortcodes For The Events Calendar Cross-Site Scripting (1.7.1)
Apache Tomcat Off-by-one Error Vulnerability (CVE-2023-28709)
Zope Web Application Server Other Vulnerability (CVE-2001-0567)