CVE-2005-2110

Publication date 5 July 2005

Last updated 17 July 2025


Ubuntu priority

WordPress 1.5.1.2 and earlier allows remote attackers to obtain sensitive information via (1) a direct request to menu-header.php or a “1” value in the feed parameter to (2) wp-atom.php, (3) wp-rss.php, or (4) wp-rss2.php, which reveal the path in an error message. NOTE: vector [1] was later reported to also affect WordPress 2.0.1.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
wordpress 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected