CVE-2008-0837
20.02.2008, 21:44
Cross-site scripting (XSS) vulnerability in the log feature in the John Godley Search Unleashed 0.2.10 plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, which is not properly handled when the administrator views the log file.
| Vendor | Product | Version |
|---|---|---|
| john_godley | search_unleashed | 0.2.10 |
| wordpress | search_unleashed_plugin | 0.2.10 |
𝑥
= Vulnerable software versions
References