6.1
CVSSv3

CVE-2017-17451

CVSSv4: NA | CVSSv3: 6.1 | CVSSv2: 4.3 | VMScore: 710 | EPSS: 0.00252 | KEV: Not Included
Published: 07/12/2017 Updated: 21/11/2024

Vulnerability Summary

The WP Mailster plugin prior to 1.5.5 for WordPress has XSS in the unsubscribe handler via the mes parameter to view/subscription/unsubscribe2.php.

Vulnerable Product Search on Vulmon Subscribe to Product

wpmailster wp mailster