Логотип exploitDog
bind:CVE-2021-24797
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24797

Количество 2

Количество 2

nvd логотип

CVE-2021-24797

около 4 лет назад

The Tickera WordPress plugin before 3.4.8.3 does not properly sanitise and escape the Name fields of booked Events before outputting them in the Orders admin dashboard, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.

CVSS3: 6.1
EPSS: Средний
github логотип

GHSA-h5xm-qm7g-wc4p

около 4 лет назад

The Tickera WordPress plugin before 3.4.8.3 does not properly sanitise and escape the Name fields of booked Events before outputting them in the Orders admin dashboard, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24797

The Tickera WordPress plugin before 3.4.8.3 does not properly sanitise and escape the Name fields of booked Events before outputting them in the Orders admin dashboard, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.

CVSS3: 6.1
12%
Средний
около 4 лет назад
github логотип
GHSA-h5xm-qm7g-wc4p

The Tickera WordPress plugin before 3.4.8.3 does not properly sanitise and escape the Name fields of booked Events before outputting them in the Orders admin dashboard, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.

12%
Средний
около 4 лет назад

Уязвимостей на страницу