Description
Stored XSS was discovered in the Easy Testimonials plugin 3.2 for WordPress. Three wp-admin/post.php parameters (_ikcf_client and _ikcf_position and _ikcf_other) have Cross-Site Scripting.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-11253 | Stored XSS was discovered in the Easy Testimonials plugin 3.2 for WordPress. Three wp-admin/post.php parameters (_ikcf_client and _ikcf_position and _ikcf_other) have Cross-Site Scripting. |
References
| Link | Providers |
|---|---|
| https://www.exploit-db.com/exploits/45900/ |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T17:03:57.261Z
Reserved: 2018-11-26T00:00:00.000Z
Link: CVE-2018-19564
No data.
Status : Modified
Published: 2018-11-26T18:29:00.193
Modified: 2024-11-21T03:58:11.013
Link: CVE-2018-19564
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD