NA

CVE-2023-4811

Published: 16/10/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

The WordPress File Upload WordPress plugin prior to 4.23.3 does not sanitise and escape some of its settings, which could allow high privilege users such as contributors to perform Stored Cross-Site Scripting attacks.

Vulnerable Product Search on Vulmon Subscribe to Product

iptanus wordpress file upload

Exploits

WordPress File Upload plugin versions prior to 4233 suffer from a persistent cross site scripting vulnerability ...