Security Advisory

CVE-2021-24534

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-16 10:48:28
Last updated 2024-08-03 19:35:20
Assigner WPScan
State PUBLISHED

Description

The PhoneTrack Meu Site Manager WordPress plugin through 0.1 does not sanitise or escape its "php_id" setting before outputting it back in an attribute in the page, leading to a stored Cross-Site Scripting issue.