Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-7989

Опубликовано: 22 мая 2016
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wordpressfixed4.3.1+dfsg-1package

Примечания

  • https://github.com/WordPress/WordPress/commit/f91a5fd10ea7245e5b41e288624819a37adf290a

  • https://www.openwall.com/lists/oss-security/2015/10/26/7

EPSS

Процентиль: 76%
0.00959
Низкий

Связанные уязвимости

CVSS3: 5.4
ubuntu
около 9 лет назад

Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714.

CVSS3: 5.4
nvd
около 9 лет назад

Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714.

CVSS3: 5.4
github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714.

EPSS

Процентиль: 76%
0.00959
Низкий