CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:N/AC:L/Au:N/C:P/I:N/A:N
AI Score
Confidence
Low
EPSS
Percentile
83.9%
index.php in WordPress 2.0.3 allows remote attackers to obtain sensitive information, such as SQL table prefixes, via an invalid paged parameter, which displays the information in an SQL error message. NOTE: this issue has been disputed by a third party who states that the issue does not leak any target-specific information.
secunia.com/advisories/20928
secunia.com/advisories/21447
security.gentoo.org/glsa/glsa-200608-19.xml
securityreason.com/securityalert/1187
www.securityfocus.com/archive/1/438942/100/0/threaded
www.securityfocus.com/archive/1/439031/100/0/threaded
www.securityfocus.com/archive/1/439062/100/0/threaded
www.securityfocus.com/archive/1/440127/100/0/threaded
www.securityfocus.com/bid/18779
www.vupen.com/english/advisories/2006/2661