Логотип exploitDog
bind:CVE-2021-25107
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-25107

Количество 2

Количество 2

nvd логотип

CVE-2021-25107

почти 4 года назад

The Form Store to DB WordPress plugin before 1.1.1 does not sanitise and escape parameter keys before outputting it back in the created entry, allowing unauthenticated attacker to perform Cross-Site Scripting attacks against admin

CVSS3: 6.1
EPSS: Средний
github логотип

GHSA-796r-rh39-cjqr

почти 4 года назад

The Form Store to DB WordPress plugin before 1.1.1 does not sanitise and escape parameter keys before outputting it back in the created entry, allowing unauthenticated attacker to perform Cross-Site Scripting attacks against admin

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-25107

The Form Store to DB WordPress plugin before 1.1.1 does not sanitise and escape parameter keys before outputting it back in the created entry, allowing unauthenticated attacker to perform Cross-Site Scripting attacks against admin

CVSS3: 6.1
12%
Средний
почти 4 года назад
github логотип
GHSA-796r-rh39-cjqr

The Form Store to DB WordPress plugin before 1.1.1 does not sanitise and escape parameter keys before outputting it back in the created entry, allowing unauthenticated attacker to perform Cross-Site Scripting attacks against admin

12%
Средний
почти 4 года назад

Уязвимостей на страницу