HIGH
SQL injection vulnerability in wp-admin/admin-ajax.php in WordPress before 2.2 allows remote attackers to execute arbitrary SQL commands via the cookie parameter
Published May 22, 2007
7.5
HIGHCVSS 2.0
EPSS 5.20%
Description
SQL injection vulnerability in wp-admin/admin-ajax.php in WordPress before 2.2 allows remote attackers to execute arbitrary SQL commands via the cookie parameter.
Affected products
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (10)
- http://osvdb.org/36311 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/25345 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/29014 third-party-advisoryx_refsource_SECUNIA
- http://www.debian.org/security/2008/dsa-1502 vendor-advisoryx_refsource_DEBIAN
- http://www.exploit-db.com/exploits/3960 exploitx_refsource_EXPLOIT-DB
- http://www.securityfocus.com/archive/1/469258/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/24076 vdb-entryx_refsource_BIDExploitPatch
- http://www.vupen.com/english/advisories/2007/1889 vdb-entryx_refsource_VUPEN
- http://www.waraxe.us/advisory-50.html x_refsource_MISCVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34399 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://osvdb.org/36311 | vdb-entryx_refsource_OSVDB | |
| http://secunia.com/advisories/25345 | third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory | |
| http://secunia.com/advisories/29014 | third-party-advisoryx_refsource_SECUNIA | |
| http://www.debian.org/security/2008/dsa-1502 | vendor-advisoryx_refsource_DEBIAN | |
| http://www.exploit-db.com/exploits/3960 | exploitx_refsource_EXPLOIT-DB | |
| http://www.securityfocus.com/archive/1/469258/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/24076 | vdb-entryx_refsource_BIDExploitPatch | |
| http://www.vupen.com/english/advisories/2007/1889 | vdb-entryx_refsource_VUPEN | |
| http://www.waraxe.us/advisory-50.html | x_refsource_MISCVendor Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/34399 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 22, 2007
Updated Aug 7, 2024
Reserved May 22, 2007
Link CVE-2007-2821
CISA Vulnrichment
Updated n/a