FreeBSD : wordpress -- multiple vulnerabilities (dca0a345-ed81-11d9-8310-0001020eed82)

This script is Copyright (C) 2005-2013 Tenable Network Security, Inc.


Synopsis :

The remote FreeBSD host is missing a security-related update.

Description :

GulfTech Security Research reports :

There are a number of vulnerabilities in WordPress that may allow an
attacker to ultimately run arbitrary code on the vulnerable system.
These vulnerabilities include SQL Injection, Cross Site Scripting, and
also issues that may aid an attacker in social engineering.

See also :

http://marc.info/?l=bugtraq&m=112006967221438
http://www.nessus.org/u?519b5168

Solution :

Update the affected package.

Risk factor :

High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)

Family: FreeBSD Local Security Checks

Nessus Plugin ID: 19142 (freebsd_pkg_dca0a345ed8111d983100001020eed82.nasl)

Bugtraq ID:

CVE ID: CVE-2005-2107
CVE-2005-2108
CVE-2005-2109
CVE-2005-2110

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now