Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-83668
HistoryOct 25, 2021 - 12:00 a.m.

WordPress Cross-Site Scripting Vulnerability (CNVD-2021-83668)

2021-10-2500:00:00
China National Vulnerability Database
www.cnvd.org.cn
5

0.001 Low

EPSS

Percentile

26.4%

WordPress is a set of blogging platforms developed by the WordPress (Wordpress) Foundation using the PHP language. A cross-site scripting vulnerability exists in the WordPress plugin Easy Digital Downloads, which can be exploited to inject arbitrary web scripts via the $start_date and $end_date parameters in the ~/includes/admin/payments/class-payments-table.php file. file with the $start_date and $end_date parameters to inject arbitrary web scripts.

0.001 Low

EPSS

Percentile

26.4%