CVE-2011-5104

Cross-site scripting (XSS) vulnerability in wpsc-admin/display-sales-logs.php in WP e-Commerce plugin 3.8.7.1 and possibly earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the custom_text parameter.  NOTE: some of these details are obtained from third party information.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 61%
VendorProductVersion
getshoppedwp_e-commerce
𝑥
≤ 3.8.7.1
getshoppedwp_e-commerce
3.6.5
getshoppedwp_e-commerce
3.6.6
getshoppedwp_e-commerce
3.6.7
getshoppedwp_e-commerce
3.6.8
getshoppedwp_e-commerce
3.6.9
getshoppedwp_e-commerce
3.6.10
getshoppedwp_e-commerce
3.6.11
getshoppedwp_e-commerce
3.6.12
getshoppedwp_e-commerce
3.6.13
getshoppedwp_e-commerce
3.7
getshoppedwp_e-commerce
3.7:beta2
getshoppedwp_e-commerce
3.7:beta3
getshoppedwp_e-commerce
3.7.1
getshoppedwp_e-commerce
3.7.2
getshoppedwp_e-commerce
3.7.3
getshoppedwp_e-commerce
3.7.4
getshoppedwp_e-commerce
3.7.5
getshoppedwp_e-commerce
3.7.5:beta1
getshoppedwp_e-commerce
3.7.5:beta2
getshoppedwp_e-commerce
3.7.5:rc1
getshoppedwp_e-commerce
3.7.5:rc2
getshoppedwp_e-commerce
3.7.5:rc3
getshoppedwp_e-commerce
3.7.5:rc4
getshoppedwp_e-commerce
3.7.5.1
getshoppedwp_e-commerce
3.7.5.1:beta
getshoppedwp_e-commerce
3.7.5.2
getshoppedwp_e-commerce
3.7.5.3
getshoppedwp_e-commerce
3.7.6
getshoppedwp_e-commerce
3.7.6:rc1
getshoppedwp_e-commerce
3.7.6:rc2
getshoppedwp_e-commerce
3.7.6:rc3
getshoppedwp_e-commerce
3.7.6:rc4
getshoppedwp_e-commerce
3.7.6.1
getshoppedwp_e-commerce
3.7.6.2
getshoppedwp_e-commerce
3.7.6.3
getshoppedwp_e-commerce
3.7.6.4
getshoppedwp_e-commerce
3.7.6.5
getshoppedwp_e-commerce
3.7.6.6
getshoppedwp_e-commerce
3.7.6.7
getshoppedwp_e-commerce
3.7.6.9
getshoppedwp_e-commerce
3.7.7
getshoppedwp_e-commerce
3.7.8
getshoppedwp_e-commerce
3.7.8.1
getshoppedwp_e-commerce
3.7.8.2
getshoppedwp_e-commerce
3.7.8.3
getshoppedwp_e-commerce
3.8
getshoppedwp_e-commerce
3.8:beta1
getshoppedwp_e-commerce
3.8:beta2
getshoppedwp_e-commerce
3.8:beta3
getshoppedwp_e-commerce
3.8:rc1
getshoppedwp_e-commerce
3.8:rc2
getshoppedwp_e-commerce
3.8:rc3
getshoppedwp_e-commerce
3.8:rc4
getshoppedwp_e-commerce
3.8.1
getshoppedwp_e-commerce
3.8.2
getshoppedwp_e-commerce
3.8.3
getshoppedwp_e-commerce
3.8.4
getshoppedwp_e-commerce
3.8.5
getshoppedwp_e-commerce
3.8.6
getshoppedwp_e-commerce
3.8.6.1
getshoppedwp_e-commerce
3.8.7
𝑥
= Vulnerable software versions