CVE-2011-5106
23.08.2012, 20:55
Cross-site scripting (XSS) vulnerability in edit-post.php in the Flexible Custom Post Type plugin before 0.1.7 for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter.
| Vendor | Product | Version |
|---|---|---|
| fractalia | flexible_custom_post_type | 0.1 |
| fractalia | flexible_custom_post_type | 0.1.3 |
| fractalia | flexible_custom_post_type | 0.1.4 |
| fractalia | flexible_custom_post_type | 0.1.5 |
𝑥
= Vulnerable software versions
References