Cross-site scripting (XSS) vulnerability in vendors/samswhois/samswhois.inc.php in the Whois Search plugin prior to 1.4.2.3 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the domain parameter, a different vulnerability than CVE-2011-5193.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phpace samswhois |
||
phpace samswhois 1.1 |