Логотип exploitDog
bind:CVE-2022-4973
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-4973

Количество 4

Количество 4

ubuntu логотип

CVE-2022-4973

больше 1 года назад

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2022-4973

больше 1 года назад

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2022-4973

больше 1 года назад

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticate ...

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-mhf3-8588-hqc6

больше 1 года назад

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-4973

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

CVSS3: 4.9
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2022-4973

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

CVSS3: 4.9
1%
Низкий
больше 1 года назад
debian логотип
CVE-2022-4973

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticate ...

CVSS3: 4.9
1%
Низкий
больше 1 года назад
github логотип
GHSA-mhf3-8588-hqc6

WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consisting of Authors, Contributors, and Editors making it possible to inject arbitrary web scripts into posts and pages that execute if the the_meta(); function is called on that page.

CVSS3: 4.9
1%
Низкий
больше 1 года назад

Уязвимостей на страницу