Description
WordPress is prone to a vulnerability that allows an attacker to gain unauthorized access to the affected application. An attacker can exploit this issue to gain administrative access to the application, which can result in total compromise of the affected application. WordPress versions prior to 2.5.1 are vulnerable.
Remediation
Update to WordPress version 2.5.1 or latest
References
http://www.cl.cam.ac.uk/~sjm217/advisories/wordpress-cookie-integrity.txt
http://www.securityfocus.com/archive/1/491356
Related Vulnerabilities
Drupal Core 8.9.x Cross-Site Scripting (8.9.0 - 8.9.15)
Moodle Improper Input Validation Vulnerability (CVE-2011-4302)
WordPress Plugin HTML5 Video Player-Best WordPress Video Player and Block SQL Injection (2.5.26)
WordPress Plugin WordPress Download Manager Cross-Site Scripting (2.7.94)
Drupal Core 4.7.x Form Action Attribute Injection (4.7.0 - 4.7.3)