Description
Cross-site scripting (XSS) vulnerability in the paging links functionality in template-functions-links.php in Wordpress 1.5.2, and possibly other versions before 2.0.1, allows remote attackers to inject arbitrary web script or HTML to Internet Explorer users via the request URI ($_SERVER['REQUEST_URI']).
Remediation
References
Related Vulnerabilities
WordPress Plugin YOP Poll Unspecified Vulnerability (5.7.7)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4605)
phpMyAdmin Other Vulnerability (CVE-2007-1395)
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-8156)
Oracle Database Server CVE-2018-2680 Vulnerability (CVE-2018-2680)