NA

CVE-2023-2624

Published: 27/06/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The KiviCare WordPress plugin prior to 3.2.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as administrator

Vulnerable Product Search on Vulmon Subscribe to Product

iqonic kivicare

Exploits

WordPress KiviCard plugin version 320 suffers from a cross site scripting vulnerability ...