Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-24519
HistoryAug 16, 2021 - 11:15 a.m.

Cross site scripting

2021-08-1611:15:00
PRIOn knowledge base
www.prio-n.com
4

0.001 Low

EPSS

Percentile

24.8%

The VikRentCar Car Rental Management System WordPress plugin before 1.1.10 does not sanitise the ‘Text Next to Icon’ field when adding or editing a Characteristic, allowing high privilege users such as admin to use XSS payload in it, leading to an authenticated Stored Cross-Site Scripting issue

CPENameOperatorVersion
car_rental_management_systemlt1.1.10

0.001 Low

EPSS

Percentile

24.8%

Related for PRION:CVE-2021-24519