Логотип exploitDog
bind:CVE-2022-0873
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-0873

Количество 2

Количество 2

nvd логотип

CVE-2022-0873

больше 3 лет назад

The Gmedia Photo Gallery WordPress plugin before 1.20.0 does not sanitise and escape the Album's name before outputting it in pages/posts with a media embed, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-mcj2-mgf2-prv8

больше 3 лет назад

The Gmedia Photo Gallery WordPress plugin before 1.20.0 does not sanitise and escape the Album's name before outputting it in pages/posts with a media embed, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-0873

The Gmedia Photo Gallery WordPress plugin before 1.20.0 does not sanitise and escape the Album's name before outputting it in pages/posts with a media embed, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed

CVSS3: 4.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-mcj2-mgf2-prv8

The Gmedia Photo Gallery WordPress plugin before 1.20.0 does not sanitise and escape the Album's name before outputting it in pages/posts with a media embed, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed

CVSS3: 4.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу