Multiple cross-site scripting (XSS) vulnerabilities in the WP-FeedStats before 2.4 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, one of which involves an rss2 feed with an invalid or missing blog with an XSS sequence in the query string.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2007-07-31T10:00:00
Updated: 2017-07-28T12:57:01
Reserved: 2007-07-31T00:00:00
Link: CVE-2007-4104
JSON object: View
NVD Information
Status : Modified
Published: 2007-07-31T10:17:00.000
Modified: 2017-07-29T01:32:43.130
Link: CVE-2007-4104
JSON object: View
Redhat Information
No data.
CWE