Lucene search

K
wpvulndbWpvulndbWPVDB-ID:C3267AF7-E292-4BAB-A808-DB72332B1520
HistoryOct 20, 2023 - 12:00 a.m.

Form Maker by 10Web < 1.15.19 - Unauthenticated Stored XSS

2023-10-2000:00:00
wpscan.com
9
form maker
plugin
unauthenticated
stored
xss
attacks
software

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

20.2%

Description The plugin does not validate and escape some parameters, which could allow unauthenticated users to perform Stored Cross-Site Scripting attacks

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

20.2%

Related for WPVDB-ID:C3267AF7-E292-4BAB-A808-DB72332B1520