includes/theme-functions.php in the OneTone theme through 3.0.6 for WordPress allows unauthenticated options changes.
References
Link | Resource |
---|---|
https://blog.nintechnet.com/unauthenticated-stored-xss-vulnerability-in-wordpress-onetone-theme-unpatched/ | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-04-03T14:16:16
Updated: 2020-04-03T14:16:16
Reserved: 2019-10-06T00:00:00
Link: CVE-2019-17230
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-04-03T15:15:14.170
Modified: 2020-08-24T17:37:01.140
Link: CVE-2019-17230
JSON object: View
Redhat Information
No data.
CWE