Lucene search

K
cvelistMitreCVELIST:CVE-2014-3841
HistoryMay 22, 2014 - 3:00 p.m.

CVE-2014-3841

2014-05-2215:00:00
mitre
www.cve.org
4
cve-2014-3841
xss
contact bank plugin
wordpress
remote attackers
arbitrary web script
html
label field
form layout configuration
third party information

AI Score

5.8

Confidence

High

EPSS

0.002

Percentile

57.2%

Cross-site scripting (XSS) vulnerability in the Contact Bank plugin before 2.0.20 for WordPress allows remote attackers to inject arbitrary web script or HTML via the Label field, related to form layout configuration. NOTE: some of these details are obtained from third party information.

AI Score

5.8

Confidence

High

EPSS

0.002

Percentile

57.2%

Related for CVELIST:CVE-2014-3841