Loading...
Loading...
WordPress 2.0.6, and 2.1Alpha 3 (SVN:4662), does not properly verify that the m parameter value has the string data type, which allows remote attackers to obtain sensitive information via an invalid m[] parameter, as demonstrated by obtaining the path, and obtaining certain SQL information such as the table prefix.
January 16, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-0262
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.