CVE-2024-11107
System Dashboard < 2.8.15 - Unauthenticated Stored XSS
The System Dashboard WordPress plugin before 2.8.15 does not sanitise and escape some parameters when outputting them in the page, which could allow unauthenticated users to perform Cross-Site Scripting attacks.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Productos afectados
Unknown · System Dashboard¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →