4.3
CVSSv2

CVE-2012-2583

Published: 17/09/2014 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Mini Mail Dashboard Widget plugin 1.42 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the body of an email.

Vulnerable Product Search on Vulmon Subscribe to Product

mini mail dashboard widget project mini mail dashboard widget 1.42

Exploits

#!/usr/bin/python ''' Author: loneferret of Offensive Security Product: Mini Mail Dashboard Widget Version: 142 Software Download: wordpressorg/extend/plugins/mini-mail-dashboard-widget/ Timeline: 29 May 2012: Vulnerability reported to CERT 30 May 2012: Response received from CERT with disclosure date set to 20 Jul 2012 14 Jul 2012: Ve ...