5.4
CVSSv3

CVE-2018-10309

Published: 24/04/2018 Updated: 06/06/2018
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

The Responsive Cookie Consent plugin prior to 1.8 for WordPress mishandles number fields, leading to XSS.

Vulnerable Product Search on Vulmon Subscribe to Product

responsive cookie consent project responsive cookie consent

Exploits

WordPress Responsive Cookie Consent versions 15, 16, and 17 suffer from a persistent cross site scripting vulnerability ...
# Exploit Title: Wordpress Responsive Cookie Consent 17 / 16 / 15 - Authenticated Persistent Cross-Site Scripting # Date: 2018-04-20 # Exploit Author: B0UG # Vendor Homepage: wwwjameskoussertaricouk/ # Software Link: en-gbwordpressorg/plugins/responsive-cookie-consent/ # Version: Tested on version 15 / 16 /17 (older versio ...