Security Advisory

CVE-2021-24322

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-01 11:33:31
Last updated 2024-08-03 19:28:23
Assigner WPScan
State PUBLISHED

Description

The Database Backup for WordPress plugin before 2.4 did not escape the backup_recipient POST parameter in before output it back in the attribute of an HTML tag, leading to a Stored Cross-Site Scripting issue.