Логотип exploitDog
bind:CVE-2022-1301
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1301

Количество 2

Количество 2

nvd логотип

CVE-2022-1301

больше 3 лет назад

The WP Contact Slider WordPress plugin before 2.4.7 does not sanitize and escape the Text to Display settings of sliders, which could allow high privileged users such as editor and above to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-gjr6-7347-57j6

больше 3 лет назад

The WP Contact Slider WordPress plugin before 2.4.7 does not sanitize and escape the Text to Display settings of sliders, which could allow high privileged users such as editor and above to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-1301

The WP Contact Slider WordPress plugin before 2.4.7 does not sanitize and escape the Text to Display settings of sliders, which could allow high privileged users such as editor and above to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

CVSS3: 4.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-gjr6-7347-57j6

The WP Contact Slider WordPress plugin before 2.4.7 does not sanitize and escape the Text to Display settings of sliders, which could allow high privileged users such as editor and above to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

CVSS3: 4.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу