Security Advisory

CVE-2013-5916

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-05-08 15:00:00
Last updated 2024-08-06 17:29:42
Assigner mitre
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in falha.php in the Bradesco Gateway plugin 2.0 for Wordpress, as used in the WP e-Commerce plugin, allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING.