Description
Cross-site scripting (XSS) vulnerability in wp-includes/general-template.php in WordPress before 20070309 allows remote attackers to inject arbitrary web script or HTML via the year parameter in the wp_title function.
Remediation
References
Related Vulnerabilities
WordPress Plugin Inline Tweet Sharer-Twitter Sharing Cross-Site Scripting (2.5.3)
WordPress Plugin Cart66 Lite::WordPress Ecommerce Multiple Vulnerabilities (1.5.1.14)
WordPress Plugin Sliding Recent Posts Cross-Site Request Forgery (1.0)
WordPress Plugin WP GitHub Tools Cross-Site Scripting (1.4.4)