Lucene search

K
patchstackPanagiotis VagenasPATCHSTACK:140F027D3CCEDD2813963894F2A6FEAF
HistoryMay 27, 2015 - 12:00 a.m.

WordPress Free Counter Plugin 1.1 - Stored XSS

2015-05-2700:00:00
Panagiotis Vagenas
patchstack.com
11

EPSS

0.002

Percentile

60.9%

This vulnerability works by using wp_ajax_nopriv_check_stat action. Any user can perform a stored XSS attack.

Solution

           Upgrade the plugin. 

EPSS

0.002

Percentile

60.9%