Lucene search

K
wpvulndbWpvulndbWPVDB-ID:1137B426-C0A4-4F0B-9272-7CBBC9B86960
HistoryDec 14, 2021 - 12:00 a.m.

.htaccess Redirect <= 0.3.1 - Reflected Cross-Site Scripting

2021-12-1400:00:00
wpscan.com
14
htaccess
redirect
cross-site scripting
vulnerability
plugin

EPSS

0.001

Percentile

30.0%

The plugin is vulnerable to Reflected Cross-Site Scripting via the link parameter found in the ~/htaccess-redirect.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.3.1.

EPSS

0.001

Percentile

30.0%

Related for WPVDB-ID:1137B426-C0A4-4F0B-9272-7CBBC9B86960