Логотип exploitDog
bind:CVE-2021-25078
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-25078

Количество 2

Количество 2

nvd логотип

CVE-2021-25078

около 4 лет назад

The Affiliates Manager WordPress plugin before 2.9.0 does not validate, sanitise and escape the IP address of requests logged by the click tracking feature, allowing unauthenticated attackers to perform Cross-Site Scripting attacks against admin viewing the tracked requests.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-fm8r-hhjh-xqg8

около 4 лет назад

The Affiliates Manager WordPress plugin before 2.9.0 does not validate, sanitise and escape the IP address of requests logged by the click tracking feature, allowing unauthenticated attackers to perform Cross-Site Scripting attacks against admin viewing the tracked requests.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-25078

The Affiliates Manager WordPress plugin before 2.9.0 does not validate, sanitise and escape the IP address of requests logged by the click tracking feature, allowing unauthenticated attackers to perform Cross-Site Scripting attacks against admin viewing the tracked requests.

CVSS3: 6.1
6%
Низкий
около 4 лет назад
github логотип
GHSA-fm8r-hhjh-xqg8

The Affiliates Manager WordPress plugin before 2.9.0 does not validate, sanitise and escape the IP address of requests logged by the click tracking feature, allowing unauthenticated attackers to perform Cross-Site Scripting attacks against admin viewing the tracked requests.

6%
Низкий
около 4 лет назад

Уязвимостей на страницу