CVE-2017-17043
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 5.1%
exploitation probability
5.1%top 8% of all CVEs
observed exploitation
nono source reports it
The Emag Marketplace Connector plugin 1.0.0 for WordPress has reflected XSS because the parameter "post" to /wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php is not filtered correctly.
Affected products
n/a · n/a