CVE-2005-2109

Source
https://cve.org/CVERecord?id=CVE-2005-2109
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2005-2109.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2005-2109
Downstream
Published
2005-07-05T04:00:00Z
Modified
2026-04-10T03:37:08.311284Z
Summary
[none]
Details

wp-login.php in WordPress 1.5.1.2 and earlier allows remote attackers to change the content of the forgotten password e-mail message via the message variable, which is not initialized before use.

References

Affected packages