Secunia Logo
 
CVE Reference: CVE-2006-3389
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-3389

Description:
index.php in WordPress 2.0.3 allows remote attackers to obtain sensitive information, such as SQL table prefixes, via an invalid paged parameter, which displays the information in an SQL error message. NOTE: this issue has been disputed by a third party who states that the issue does not leak any target-specific information.

CVE Status:
Candidate

References:

SREASON
  http://securityreason.com/securityalert/1187

SAID
  Secunia Advisory: SA20928
  Secunia Advisory: SA21447

GENTOO
  http://security.gentoo.org/glsa/glsa-200608-19.xml

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/440127/100/0/threaded
  http://www.securityfocus.com/archive/1/439031/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/439062/100/0/threaded
  http://www.securityfocus.com/archive/1/archive/1/438942/100/0/threaded

BID
  18779


Return to the previous page.