Cross-site scripting (XSS) vulnerability in adminimize/adminimize_page.php in the Adminimize plugin before 1.7.22 for WordPress allows remote attackers to inject arbitrary web script or HTML via the page parameter.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://plugins.trac.wordpress.org/changeset?reponame=&new=467338%40adminimize&old=466900%40adminimize#file5 - | |
References | () http://wordpress.org/extend/plugins/adminimize/changelog/ - | |
References | () http://www.openwall.com/lists/oss-security/2012/01/05/10 - | |
References | () http://www.openwall.com/lists/oss-security/2012/01/10/9 - | |
References | () http://www.osvdb.org/77472 - | |
References | () http://www.securityfocus.com/archive/1/520591 - | |
References | () http://www.securityfocus.com/archive/1/520591/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/50745 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/71414 - |
Information
Published : 2012-08-29 04:39
Updated : 2024-11-21 01:33
NVD link : CVE-2011-4926
Mitre link : CVE-2011-4926
CVE.ORG link : CVE-2011-4926
JSON object : View
Products Affected
wordpress
- wordpress
bueltge
- adminimize
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')