CVE-2015-9438
CVE-2015-9438 | |
Description | The display-widgets plugin before 2.04 for WordPress has XSS via the wp-admin/admin-ajax.php?action=dw_show_widget id_base, widget_number, or instance parameter. |
Impact |
CVSS v2 : 3.5 LOW
|
Type | |
Attack Vector |
CVSSv2 Vector : AV:N/AC:M/Au:S/C:N/I:P/A:N |
Quick links | CVE, NVD, CERT, Metasploit, Exploit-db, Fulldisc, Bugtraq, Microsoft, Red Hat, Debian, GitHub code/issues, Google |
References |