Description
WordPress is prone to a security bypass vulnerability. Authenticated attackers may exploit this issue to gain access to configuration scripts, which may allow them to obtain sensitive information or elevate privileges; other attacks may also be possible. WordPress versions 2.8 and prior are vulnerable.
Remediation
Update to WordPress version 2.8.1 or latest
References
Related Vulnerabilities
MediaWiki Missing Authentication for Critical Function Vulnerability (CVE-2019-12468)
Drupal Core 7.x Cross-Site Request Forgery (7.0 - 7.12)
PrestaShop Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-5682)
PHP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-1581)