Lucene search

K
patchstackMustLivePATCHSTACK:853FC9DFEA1D7571B4ABC73C9FFE0901
HistoryNov 09, 2009 - 12:00 a.m.

WordPress WP-Cumulus Plugin 1.x - Cross-Site Scripting Vulnerability

2009-11-0900:00:00
MustLive
patchstack.com
10

EPSS

0.168

Percentile

96.1%

WP-Cumulus plugin for WordPress is prone to a cross-site scripting vulnerability. It is caused by the application fails to properly clean up user-supplied input. An attacker may execute arbitrary script code in the browser of an user in the context of the affected site. In this way the attacker could steal cookie-based authentication credentials, also, implement other attacks.

Solution

           Update the plugin. 

EPSS

0.168

Percentile

96.1%

Related for PATCHSTACK:853FC9DFEA1D7571B4ABC73C9FFE0901