Логотип exploitDog
bind:CVE-2020-24313
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-24313

Количество 2

Количество 2

nvd логотип

CVE-2020-24313

больше 5 лет назад

Etoile Web Design Ultimate Appointment Booking & Scheduling WordPress Plugin v1.1.9 and lower does not sanitize the value of the "Appointment_ID" GET parameter before echoing it back out inside an input tag. This results in a reflected XSS vulnerability that attackers can exploit with a specially crafted URL.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-26rv-cxmp-hwgh

больше 3 лет назад

Etoile Web Design Ultimate Appointment Booking & Scheduling WordPress Plugin v1.1.9 and lower does not sanitize the value of the "Appointment_ID" GET parameter before echoing it back out inside an input tag. This results in a reflected XSS vulnerability that attackers can exploit with a specially crafted URL.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-24313

Etoile Web Design Ultimate Appointment Booking & Scheduling WordPress Plugin v1.1.9 and lower does not sanitize the value of the "Appointment_ID" GET parameter before echoing it back out inside an input tag. This results in a reflected XSS vulnerability that attackers can exploit with a specially crafted URL.

CVSS3: 6.1
0%
Низкий
больше 5 лет назад
github логотип
GHSA-26rv-cxmp-hwgh

Etoile Web Design Ultimate Appointment Booking & Scheduling WordPress Plugin v1.1.9 and lower does not sanitize the value of the "Appointment_ID" GET parameter before echoing it back out inside an input tag. This results in a reflected XSS vulnerability that attackers can exploit with a specially crafted URL.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу