Lucene search

K
patchstackHeine PedersenPATCHSTACK:E7CBA9D4B1D59BD0EF5378A442786E5E
HistoryMay 15, 2012 - 12:00 a.m.

WordPress Soundcloud Is Gold 2.1 - Cross Site Scripting

2012-05-1500:00:00
Heine Pedersen
patchstack.com
4

EPSS

0.002

Percentile

60.4%

WordPress Soundcloud Is Gold plugin’s “width” parameter is prone to a cross-site scripting vulnerability. It fails to properly clean up user-supplied input. An attacker may execute arbitrary script code in the browser of an user in the context of the affected site. In this way the attacker can steal cookie-based authentication credentials. Other attacks are also possible.

Solution

           Update the plugin. 

EPSS

0.002

Percentile

60.4%

Related for PATCHSTACK:E7CBA9D4B1D59BD0EF5378A442786E5E