4.8
CVSSv3

CVE-2018-10752

Published: 05/05/2018 Updated: 07/03/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

The Tagregator plugin 0.6 for WordPress has stored XSS via the title field in an Add New action.

Vulnerable Product Search on Vulmon Subscribe to Product

tagregator project tagregator 0.6

Exploits

# Exploit Title: WordPress Plugin Tagregator 06 - Cross-Site Scripting # Date: 2018-05-05 # Exploit Author: ManhNho # Vendor Homepage: wordpressorg/plugins/tagregator/ # Software Link: downloadswordpressorg/plugin/tagregator06zip # Ref: pastebincom/ZGr5tyP2 # Version: 06 # Tested on: CentOS 65 # CVE : CVE-2018-1075 ...
WordPress Tagregator plugin version 06 suffers from a cross site scripting vulnerability ...