header-logo
Suggest Exploit
vendor:
Wordpress
by:
5.5
CVSS
MEDIUM
Multiple
CWE
Product Name: Wordpress
Affected Version From: 2.9.2004
Affected Version To: 2.9.2004
Patch Exists: NO
Related CWE:
CPE: a:gazette_edition:wordpress:2.9.4
Metasploit:
Other Scripts:
Platforms Tested:

Multiple vulnerabilities in Gazette Edition for WordPress

The Gazette Edition for Wordpress is prone to multiple security vulnerabilities. These vulnerabilities include multiple denial-of-service vulnerabilities, a cross-site scripting vulnerability, and an information-disclosure vulnerability. Exploiting these issues could allow an attacker to deny service to legitimate users, gain access to sensitive information, execute arbitrary script code, or steal cookie-based authentication credentials. Other attacks may also be possible.

Mitigation:

Upgrade to Gazette Edition for Wordpress version 2.9.5 or later to address these vulnerabilities.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/47320/info

The Gazette Edition for Wordpress is prone to multiple security vulnerabilities. These vulnerabilities include multiple denial-of-service vulnerabilities, a cross-site scripting vulnerability, and an information-disclosure vulnerability.

Exploiting these issues could allow an attacker to deny service to legitimate users, gain access to sensitive information, execute arbitrary script code, or steal cookie-based authentication credentials. Other attacks may also be possible.

Gazette Edition for Wordpress 2.9.4 and prior versions are vulnerable. 

http://www.example.com/wp-content/themes/gazette/thumb.php?src=1%3Cbody%20onload=alert(document.cookie)%3E

http://www.example.com/wp-content/themes/gazette/thumb.php?src=http://site

http://www.example.com/wp-content/themes/gazette/thumb.php?src=http://site/big_file&h=1&w=1