The yop-poll plugin before 6.0.3 for WordPress has wp-admin/admin.php?page=yop-polls&action=view-votes poll_id XSS.
References
Link Resource
http://seclists.org/fulldisclosure/2019/Mar/43 Exploit Third Party Advisory
https://lists.openwall.net/full-disclosure/2019/02/05/15 Exploit Mailing List Third Party Advisory
https://security-consulting.icu/blog/2019/02/wordpress-yop-poll-xss/ Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-03-21T23:03:15

Updated: 2019-03-22T19:06:05

Reserved: 2019-03-21T00:00:00


Link: CVE-2019-9914

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-03-22T00:29:00.580

Modified: 2019-03-25T16:43:10.597


Link: CVE-2019-9914

JSON object: View

cve-icon Redhat Information

No data.

CWE