The WP Google Maps WordPress plugin before 8.1.12 did not sanitise, validate of escape the Map Name when output in the Map List of the admin dashboard, leading to an authenticated Stored Cross-Site Scripting issue
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/163261/WordPress-WP-Google-Maps-8.1.11-Cross-Site-Scripting.html | Third Party Advisory VDB Entry Exploit |
https://wpscan.com/vulnerability/1270588c-53fe-447e-b83c-1b877dc7a954 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2021-06-21T19:18:26
Updated: 2021-06-23T17:06:13
Reserved: 2021-01-14T00:00:00
Link: CVE-2021-24383
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-06-21T20:15:09.330
Modified: 2023-05-24T00:49:51.630
Link: CVE-2021-24383
JSON object: View
Redhat Information
No data.
CWE