Attack (Attack ID:320314)

Release Date2015/07/07

Attack NameWEB WordPress Comments Stored Cross Site Scripting (CVE-2015-3440)

Severity

BUG ID

CVE ID

 

Description

A cross-site scripting vulnerability has been reported in Wordpress. The vulnerability is due to insufficient validation of comments.
Impact:Cross-site scripting
Affected System:Linux, FreeBSD, Other Unix
Additional References:CVE-2015-3440

 

Solution

Update vendor's patch.