CVE-2023-7084
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
The Voting Record WordPress plugin through 2.0 is missing sanitisation as well as escaping, which could allow any authenticated users, such as subscriber to perform Stored XSS attacks
Affected (1)
Products: Davidjmiller: Voting Record
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.0 |
References (4)
Source: contact@wpscan.com
ExploitThird Party Advisory
Source: contact@wpscan.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.