CVE-2005-2612
EPSS 73.4%Published: 8/17/2005Modified: 5/27/2026
Description
Direct code injection vulnerability in WordPress 1.5.1.3 and earlier allows remote attackers to execute arbitrary PHP code via the cache_lastpostdate[server] cookie.
Affected packages (1)
- Debian/wordpressfrom 0, < 1.5.2-1