Логотип exploitDog
bind:CVE-2021-24621
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24621

Количество 2

Количество 2

nvd логотип

CVE-2021-24621

больше 4 лет назад

The WP Courses LMS WordPress plugin before 2.0.44 does not sanitise its Video Embed Code, allowing malicious code to be injected in it by high privilege users, even when the unfiltered_html capability is disallowed, which could lead to Stored Cross-Site Scripting issues

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-8jw6-mfpx-fgw6

больше 3 лет назад

The WP Courses LMS WordPress plugin before 2.0.44 does not sanitise its Video Embed Code, allowing malicious code to be injected in it by high privilege users, even when the unfiltered_html capability is disallowed, which could lead to Stored Cross-Site Scripting issues

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24621

The WP Courses LMS WordPress plugin before 2.0.44 does not sanitise its Video Embed Code, allowing malicious code to be injected in it by high privilege users, even when the unfiltered_html capability is disallowed, which could lead to Stored Cross-Site Scripting issues

CVSS3: 4.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-8jw6-mfpx-fgw6

The WP Courses LMS WordPress plugin before 2.0.44 does not sanitise its Video Embed Code, allowing malicious code to be injected in it by high privilege users, even when the unfiltered_html capability is disallowed, which could lead to Stored Cross-Site Scripting issues

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу