CVE

Id
27901  
CVE No.
CVE-2007-4544  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in wp-newblog.php in WordPress multi-user (MU) 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the weblog_id parameter (Username field).  
Phase
Assigned (20070827)  
Votes
None (candidate not yet proposed)  
Comments