Beveiligingsadvies

CVE-2021-24883

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-11-29 08:25:44
Laatst bijgewerkt 2024-08-03 19:49:12
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Popup Anything WordPress plugin before 2.0.4 does not escape the Link Text and Button Text fields of Popup, which could allow users with a role as low as Contributor to perform Cross-Site Scripting attacks