Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-0237

Опубликовано: 08 июл. 2013
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wordpressfixed3.5.1+dfsg-1package

Примечания

  • http://wordpress.org/news/2013/01/wordpress-3-5-1/

  • https://www.openwall.com/lists/oss-security/2013/01/25/7

EPSS

Процентиль: 62%
0.0043
Низкий

Связанные уязвимости

ubuntu
почти 12 лет назад

Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.

nvd
почти 12 лет назад

Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.

EPSS

Процентиль: 62%
0.0043
Низкий