CVE-2009-1030
Published Mar 20, 2009
Last updated 6 years ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in the choose_primary_blog function in wp-includes/wpmu-functions.php in WordPress MU (WPMU) before 2.7 allows remote attackers to inject arbitrary web script or HTML via the HTTP Host header.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12FFA638-4919-4D9F-9F27-F421C9F25B69", "versionEndIncluding": "2.6" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8D40A30E-7BA2-4121-90D0-55EB5ACDBC4F" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE8F048D-8B9D-4A1A-85CF-E0240B672864" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCC5983D-8B24-408A-A2B0-3D9E8918734E" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.0:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7343BA05-4A07-49C3-B4D8-69F1DD308B49" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.0:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49E5C0D7-E4FE-4A7C-9A20-D085DA63D434" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2912D04D-A004-4842-8EF0-B51DAAA5FD46" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A77286DE-D583-4359-8962-439583BE9BA1" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D5ED66D3-5D12-42CE-8B98-6A2984DAC7F9" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CFB3E9E3-1341-4F34-B6D1-5DF9F3B1D1D2" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B0EA81B6-0254-404D-8A2B-80C027383FCD" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "738C3727-FCA0-4C7B-B6D6-2FC14987706A" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8149192C-167C-4459-8C20-355DE0FF2921" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2.4:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EBC1B2B1-C8EE-47A4-BE44-CAC1A6CD432E" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.2.5a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82E6D03D-0547-4CAB-A1CF-AEAC82634437" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF5136FA-5060-4448-9874-3DF375467ECD" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7FB8E4A4-818E-4FDF-8C83-7C8FB5C83909" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3F534621-ED5F-46D0-A893-D0C6DAACB0C1" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1930525-806B-49B1-A18E-189D41E5885C" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.5:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "330826FD-833C-4BB4-8293-2812956496B3" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:1.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "555E7E8A-3632-416B-889E-68E98AABE8CE" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:2.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EAE70A19-919A-4478-B97B-EEF9FA29BECA" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:2.6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "70524981-C0ED-4915-B0F3-A9F5D4865A34" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:2.6.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E9450D1-B817-4A38-A46F-05FCB6692A8D" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:2.6.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3AA78384-3133-442A-B135-192440FB1745" }, { "criteria": "cpe:2.3:a:wordpress:wordpress_mu:2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FBFF1FD7-49D4-4EF3-9A2F-49058AB00AE1" } ], "operator": "OR" } ] } ]