Cross-site scripting (XSS) vulnerability in the SoundCloud Is Gold plugin 2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the width parameter in a soundcloud_is_gold_player_preview action to wp-admin/admin-ajax.php.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-01-16T21:00:00

Updated: 2015-05-12T18:57:00

Reserved: 2014-01-16T00:00:00


Link: CVE-2012-6624

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2014-01-16T21:55:44.520

Modified: 2019-09-30T11:57:39.140


Link: CVE-2012-6624

JSON object: View

cve-icon Redhat Information

No data.

CWE