Логотип exploitDog
bind:CVE-2021-24496
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24496

Количество 2

Количество 2

nvd логотип

CVE-2021-24496

больше 4 лет назад

The Community Events WordPress plugin before 1.4.8 does not sanitise, validate or escape its importrowscount and successimportcount GET parameters before outputting them back in an admin page, leading to a reflected Cross-Site Scripting issue which will be executed in the context of a logged in administrator

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-9g3p-ghhv-vpv9

больше 3 лет назад

The Community Events WordPress plugin before 1.4.8 does not sanitise, validate or escape its importrowscount and successimportcount GET parameters before outputting them back in an admin page, leading to a reflected Cross-Site Scripting issue which will be executed in the context of a logged in administrator

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24496

The Community Events WordPress plugin before 1.4.8 does not sanitise, validate or escape its importrowscount and successimportcount GET parameters before outputting them back in an admin page, leading to a reflected Cross-Site Scripting issue which will be executed in the context of a logged in administrator

CVSS3: 6.1
0%
Низкий
больше 4 лет назад
github логотип
GHSA-9g3p-ghhv-vpv9

The Community Events WordPress plugin before 1.4.8 does not sanitise, validate or escape its importrowscount and successimportcount GET parameters before outputting them back in an admin page, leading to a reflected Cross-Site Scripting issue which will be executed in the context of a logged in administrator

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу