Beveiligingsadvies

CVE-2022-1152

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-04-25 15:51:18
Laatst bijgewerkt 2024-08-02 23:55:24
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Menubar WordPress plugin before 5.8 does not sanitise and escape the command parameter before outputting it back in the response via the menubar AJAX action (available to any authenticated users), leading to a Reflected Cross-Site Scripting