Логотип exploitDog
bind:CVE-2021-4227
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-4227

Количество 2

Количество 2

nvd логотип

CVE-2021-4227

около 2 лет назад

The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-h3w7-w9rh-w829

около 2 лет назад

The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-4227

The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section

CVSS3: 5.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-h3w7-w9rh-w829

The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section

CVSS3: 5.3
0%
Низкий
около 2 лет назад

Уязвимостей на страницу