Lucene search

K
cvelistMitreCVELIST:CVE-2019-6112
HistoryAug 14, 2020 - 1:42 p.m.

CVE-2019-6112

2020-08-1413:42:24
mitre
www.cve.org
5
xss
sell media
wordpress
remote attackers
arbitrary web script
html
keyword parameter
search field

EPSS

0.001

Percentile

47.4%

A Cross-site scripting (XSS) vulnerability in /inc/class-search.php in the Sell Media plugin v2.4.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the keyword parameter (aka $search_term or the Search field).

EPSS

0.001

Percentile

47.4%