Stored XSS in Salutation Responsive WordPress + BuddyPress Theme version 3.0.15 could allow logged-in users to do almost anything an admin can
References
Link | Resource |
---|---|
https://security.dxw.com/advisories/stored-xss-salutation-theme/ | Exploit Third Party Advisory |
https://wpvulndb.com/vulnerabilities/9734 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2017-11-17 21:29
Updated : 2024-02-04 19:29
NVD link : CVE-2017-1000227
Mitre link : CVE-2017-1000227
CVE.ORG link : CVE-2017-1000227
JSON object : View
Products Affected
parallelus
- salutation
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')