Author: nion Date: 2008-02-15 14:36:27 +0000 (Fri, 15 Feb 2008) New Revision: 8166 Modified: data/CVE/list Log: CVE-2008-019{4,3} fixed in wordpress 2.1.0-1 Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-02-15 14:20:48 UTC (rev 8165) +++ data/CVE/list 2008-02-15 14:36:27 UTC (rev 8166) @@ -1349,11 +1349,11 @@ NOTE: full path and DB structure already known on Debian NOTE: poked hendry CVE-2008-0194 (Directory traversal vulnerability in wp-db-backup.php in WordPress ...) - - wordpress <not-affected> (Vulnerable code removed since 2.1 release) + - wordpress 2.1.0-1 + NOTE: Vulnerable code removed since 2.1 release CVE-2008-0193 (Cross-site scripting (XSS) vulnerability in wp-db-backup.php in ...) - - wordpress <unfixed> - TODO: check; exact affectedness needs to be verified - NOTE: poked hendry + - wordpress 2.1.0-1 + NOTE: Vulnerable code removed since 2.1 release CVE-2008-0192 (Multiple cross-site scripting (XSS) vulnerabilities in WordPress 2.0.9 ...) - wordpress 2.0.10-1 NOTE: poked hendry