Description
|
|
A vulnerability has been identified in WordPress, which could be exploited by malicious users to inject SQL queries and gain knowledge of sensitive information. This issue is caused by an input validation error in the "do_trackbacks()" [wp-includes/comment.php] function when processing the "tb_ping" variable, which could allow attackers with "publish_posts" and "edit_published_posts" capabilities to disclose information from the database via SQL injection attacks.
|