ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Social Networks Auto-Poster Plugin <= 3.4.17 - Stored XSS

Product
Social Networks Auto-Poster
Description
Because of this vulnerability, the attackers can inject arbitrary web script or HTML.
Solution
Update the plugin.
Classification
Type XSS (Cross Site Scripting)
OWASP Top 10 A3: Cross Site Scripting (XSS)
References
Research-G0blin
CVE
Name CVE-N/A
Versions
Affected In <= 3.4.17
Fixed In 3.4.18
Disclosure date
2015-05-25
Credits
James Hooker