"evaluatorSolution":"This vulnerability has been addressed by the vendor with the release of the following product update: http://wordpress.org/development/2007/04/wordpress-213-and-2010/",
"descriptions":[
{
"lang":"en",
"value":"SQL injection vulnerability in xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users to execute arbitrary SQL commands via a string parameter value in an XML RPC mt.setPostCategories method call, related to the post_id variable."
},
{
"lang":"es",
"value":"Una vulnerabilidad de inyecci\u00f3n SQL en xmlrpc (xmlrpc.php) en WordPress versi\u00f3n 2.1.2, y probablemente anteriores, permite a usuarios autenticados remotos ejecutar comandos SQL arbitrarios por medio de un valor del par\u00e1metro string en una llamada RPC XML del m\u00e9todo mt.setPostCategories, relacionado con la variable post_id."