Description
Multiple cross-site scripting (XSS) vulnerabilities in the "post comment" functionality of WordPress 2.0.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) website, and (3) comment parameters.
Remediation
References
Related Vulnerabilities
Oracle Application Server CVE-2008-0346 Vulnerability (CVE-2008-0346)
WordPress Plugin WPGlobus-Multilingual Everything! Multiple Vulnerabilities (1.9.6)
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-1468)
WordPress Plugin Master Slider-WordPress Responsive Touch Slider Unspecified Vulnerability (2.18.2)
WordPress Plugin Easy PayPal Events Unspecified Vulnerability (1.1.6)