Security Advisory

CVE-2018-1002009

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-12-03 16:00:00
Last updated 2024-08-05 12:47:57
Assigner larry_cashdollar
State PUBLISHED

Description

There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in unsubscribe.html.php:3: via GET reuqest to the email variable.