Описание
Cross-site scripting (XSS) vulnerability in wp-admin/press-this.php in WordPress before 2.8.6 allows remote authenticated users to inject arbitrary web script or HTML via the s parameter (aka the selection variable).
Релиз | Статус | Примечание |
---|---|---|
dapper | ignored | end of life |
devel | not-affected | 2.8.6-1ubuntu1 |
hardy | ignored | end of life |
intrepid | ignored | end of life, was needed |
jaunty | ignored | end of life |
karmic | ignored | end of life |
lucid | not-affected | 2.8.6-1ubuntu1 |
maverick | not-affected | 2.8.6-1ubuntu1 |
natty | not-affected | 2.8.6-1ubuntu1 |
oneiric | not-affected | 2.8.6-1ubuntu1 |
Показывать по
Ссылки на источники
EPSS
3.5 Low
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in wp-admin/press-this.php in WordPress before 2.8.6 allows remote authenticated users to inject arbitrary web script or HTML via the s parameter (aka the selection variable).
Cross-site scripting (XSS) vulnerability in wp-admin/press-this.php in ...
Cross-site scripting (XSS) vulnerability in wp-admin/press-this.php in WordPress before 2.8.6 allows remote authenticated users to inject arbitrary web script or HTML via the s parameter (aka the selection variable).
EPSS
3.5 Low
CVSS2