Логотип exploitDog
bind:CVE-2021-24481
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24481

Количество 2

Количество 2

nvd логотип

CVE-2021-24481

больше 4 лет назад

The Any Hostname WordPress plugin through 1.0.6 does not sanitise or escape its "Allowed hosts" setting, leading to an authenticated stored XSS issue as high privilege users are able to set XSS payloads in it

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-3xf9-4gwf-w55x

больше 3 лет назад

The Any Hostname WordPress plugin through 1.0.6 does not sanitise or escape its "Allowed hosts" setting, leading to an authenticated stored XSS issue as high privilege users are able to set XSS payloads in it

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24481

The Any Hostname WordPress plugin through 1.0.6 does not sanitise or escape its "Allowed hosts" setting, leading to an authenticated stored XSS issue as high privilege users are able to set XSS payloads in it

CVSS3: 4.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3xf9-4gwf-w55x

The Any Hostname WordPress plugin through 1.0.6 does not sanitise or escape its "Allowed hosts" setting, leading to an authenticated stored XSS issue as high privilege users are able to set XSS payloads in it

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу