The SeedProd coming-soon plugin before 5.1.1 for WordPress allows XSS.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/158649/WordPress-Maintenance-Mode-By-SeedProd-5.1.1-Cross-Site-Scripting.html | Exploit Third Party Advisory VDB Entry |
https://wordpress.org/plugins/coming-soon/#developers | Release Notes Third Party Advisory |
https://wpvulndb.com/vulnerabilities/10283 | Third Party Advisory |
https://www.getastra.com/blog/911/plugin-exploit/stored-xss-coming-soon-page-maintenance-mode-plugin/ | Third Party Advisory |
https://www.jinsonvarghese.com/stored-xss-coming-soon-maintenance-mode-wordpress-plugin/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-06-24T19:58:59
Updated: 2020-07-29T19:06:07
Reserved: 2020-06-24T00:00:00
Link: CVE-2020-15038
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-06-24T20:15:10.347
Modified: 2023-01-27T19:25:46.510
Link: CVE-2020-15038
JSON object: View
Redhat Information
No data.
CWE