ID | CVE-2021-24888 | ||||||
Sažetak | The ImageBoss WordPress plugin before 3.0.6 does not sanitise and escape its Source Name setting, which could allow high privilege users to perform Cross-Site Scripting attacks | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:M/Au:S/C:N/I:P/A:N | ||||||
Zadnje važnije ažuriranje | 29-11-2021 - 14:44 | ||||||
Objavljeno | 23-11-2021 - 20:15 |