CVE-2013-4117

Cross-site scripting (XSS) vulnerability in includes/CatGridPost.php in the Category Grid View Gallery plugin 2.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the ID parameter.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:anshul_sharma:category-grid-view-gallery:2.3.1:*:*:*:*:*:*:*
cpe:2.3:a:wordpress:wordpress:-:*:*:*:*:*:*:*

History

21 Nov 2024, 01:54

Type Values Removed Values Added
References () http://exploit.iedb.ir/exploits-177.html - () http://exploit.iedb.ir/exploits-177.html -
References () http://openwall.com/lists/oss-security/2013/07/11/11 - () http://openwall.com/lists/oss-security/2013/07/11/11 -
References () http://osvdb.org/94805 - () http://osvdb.org/94805 -
References () http://packetstormsecurity.com/files/122259/WordPress-Category-Grid-View-Gallery-XSS.html - () http://packetstormsecurity.com/files/122259/WordPress-Category-Grid-View-Gallery-XSS.html -
References () http://seclists.org/bugtraq/2013/Jul/17 - () http://seclists.org/bugtraq/2013/Jul/17 -
References () http://www.securityfocus.com/bid/60905 - () http://www.securityfocus.com/bid/60905 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/85395 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/85395 -

Information

Published : 2013-07-16 14:08

Updated : 2024-11-21 01:54


NVD link : CVE-2013-4117

Mitre link : CVE-2013-4117

CVE.ORG link : CVE-2013-4117


JSON object : View

Products Affected

anshul_sharma

  • category-grid-view-gallery

wordpress

  • wordpress
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')