Логотип exploitDog
bind:CVE-2024-12302
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-12302

Количество 2

Количество 2

nvd логотип

CVE-2024-12302

10 месяцев назад

The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scripting attacks

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-24m8-vx7p-q7mf

10 месяцев назад

The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scripting attacks

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-12302

The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scripting attacks

CVSS3: 6.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-24m8-vx7p-q7mf

The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scripting attacks

CVSS3: 6.1
0%
Низкий
10 месяцев назад

Уязвимостей на страницу