CVE-2024-2761 - CERT CVE
ID CVE-2024-2761
Sažetak The Genesis Blocks WordPress plugin before 3.1.3 does not properly escape data input provided to some of its blocks, allowing using with at least contributor privileges to conduct Stored XSS attacks.
Reference
CVSS
Base: 6.8
Impact: 4.0
Exploitability:2.3
Pristup
VektorSloženostAutentikacija
NETWORK LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
HIGH NONE NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
Zadnje važnije ažuriranje 30-05-2025 - 16:00
Objavljeno 19-04-2024 - 05:15