Логотип exploitDog
bind:CVE-2021-24967
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24967

Количество 2

Количество 2

nvd логотип

CVE-2021-24967

около 4 лет назад

The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.6.4 does not sanitise and escape some lead values, which could allow unauthenticated users to perform Cross-Site Scripting attacks against logged in admin viewing the inserted Leads

CVSS3: 6.1
EPSS: Средний
github логотип

GHSA-rmpw-3qc7-gg2j

около 4 лет назад

The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.6.4 does not sanitise and escape some lead values, which could allow unauthenticated users to perform Cross-Site Scripting attacks against logged in admin viewing the inserted Leads

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24967

The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.6.4 does not sanitise and escape some lead values, which could allow unauthenticated users to perform Cross-Site Scripting attacks against logged in admin viewing the inserted Leads

CVSS3: 6.1
12%
Средний
около 4 лет назад
github логотип
GHSA-rmpw-3qc7-gg2j

The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.6.4 does not sanitise and escape some lead values, which could allow unauthenticated users to perform Cross-Site Scripting attacks against logged in admin viewing the inserted Leads

12%
Средний
около 4 лет назад

Уязвимостей на страницу