← volver
CVE-2022-1027

Page Restriction WordPress < 1.2.7 - Admin+ Stored Cross-Site Scripting

EPSS 0.6%CWE-79
The Page Restriction WordPress (WP) WordPress plugin before 1.2.7 allows bad actors with administrator privileges to the settings page to inject Javascript code to its settings leading to stored Cross-Site Scripting that will only affect administrator users.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →