Lucene search

K
cvelistPatchstackCVELIST:CVE-2023-47182
HistoryNov 06, 2023 - 9:52 a.m.

CVE-2023-47182 WordPress Login Screen Manager Plugin <= 3.5.2 is vulnerable to Cross Site Scripting (XSS)

2023-11-0609:52:48
CWE-352
Patchstack
www.cve.org
1
cve-2023-47182
cross site scripting
cross site request forgery
stored xss
nazmul hossain nihal
version 3.5.2

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

24.1%

Cross-Site Request Forgery (CSRF) leading to a Stored Cross-Site Scripting (XSS) vulnerability in Nazmul Hossain Nihal Login Screen Manager plugin <= 3.5.2 versions.

CNA Affected

[
  {
    "collectionURL": "https://wordpress.org/plugins",
    "defaultStatus": "unaffected",
    "packageName": "login-screen-manager",
    "product": "Login Screen Manager",
    "vendor": "Nazmul Hossain Nihal",
    "versions": [
      {
        "lessThanOrEqual": "3.5.2",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

24.1%

Related for CVELIST:CVE-2023-47182