CVE-2005-2612

Publication date 17 August 2005

Last updated 17 July 2025


Ubuntu priority

Description

Direct code injection vulnerability in WordPress 1.5.1.3 and earlier allows remote attackers to execute arbitrary PHP code via the cache_lastpostdate[server] cookie.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
wordpress 7.04 feisty
Fixed 2.0.2-2
6.10 edgy
Fixed 2.0.2-2
6.06 LTS dapper
Fixed 2.0.2-2