CVE-2014-10012

Cross-site scripting (XSS) vulnerability in the Another WordPress Classifieds Plugin plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the query string to the default URI.
Configurations

Configuration 1 (hide)

cpe:2.3:a:strategy11:awp_classifieds:3.3.1:*:*:*:*:wordpress:*:*

History

25 Sep 2024, 14:33

Type Values Removed Values Added
First Time Strategy11 awp Classifieds
Strategy11
CPE cpe:2.3:a:awpcp:another_wordpress_classifieds_plugin:3.3.1:*:*:*:*:wordpress:*:* cpe:2.3:a:strategy11:awp_classifieds:3.3.1:*:*:*:*:wordpress:*:*

Information

Published : 2015-01-13 11:59

Updated : 2024-09-25 14:33


NVD link : CVE-2014-10012

Mitre link : CVE-2014-10012

CVE.ORG link : CVE-2014-10012


JSON object : View

Products Affected

strategy11

  • awp_classifieds
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')