Описание
Cross-site scripting (XSS) vulnerability in wp-admin/plugins.php in WordPress before 3.0.2 might allow remote attackers to inject arbitrary web script or HTML via a plugin's author field, which is not properly handled during a Delete Plugin action.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | |
lucid | ignored | end of life |
precise | not-affected | |
quantal | not-affected | |
raring | not-affected | |
saucy | not-affected | |
upstream | released | 3.0.2 |
Показывать по
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in wp-admin/plugins.php in WordPress before 3.0.2 might allow remote attackers to inject arbitrary web script or HTML via a plugin's author field, which is not properly handled during a Delete Plugin action.
Cross-site scripting (XSS) vulnerability in wp-admin/plugins.php in Wo ...
Cross-site scripting (XSS) vulnerability in wp-admin/plugins.php in WordPress before 3.0.2 might allow remote attackers to inject arbitrary web script or HTML via a plugin's author field, which is not properly handled during a Delete Plugin action.
EPSS
4.3 Medium
CVSS2