CVE-2008-0191

Publication date 10 January 2008

Last updated 24 July 2024


Ubuntu priority

Negligible

Why this priority?

Description

WordPress 2.2.x and 2.3.x allows remote attackers to obtain sensitive information via an invalid p parameter in an rss2 action to the default URI, which reveals the full path and the SQL database structure.

Read the notes from the security team

Status

Package Ubuntu Release Status
wordpress 9.10 karmic Ignored
9.04 jaunty Ignored
8.10 intrepid Ignored
8.04 LTS hardy Ignored
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life

Notes


jdstrand

full path already known on Ubuntu/Debian


mdeslaur

not a security issue, ignored


Access our resources on patching vulnerabilities