CVE-2012-2633
15.06.2012, 19:55
Cross-site scripting (XSS) vulnerability in wassup.php in the WassUp plugin before 1.8.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.
Vendor | Product | Version |
---|---|---|
wordpress | wassup_plugin | 𝑥 ≤ 1.8.3 |
wordpress | wassup_plugin | 1.4 |
wordpress | wassup_plugin | 1.4.3 |
wordpress | wassup_plugin | 1.7.2 |
wordpress | wassup_plugin | 1.7.2.1 |
wordpress | wassup_plugin | 1.8 |
wordpress | wassup_plugin | 1.8.1 |
wordpress | wassup_plugin | 1.8.2 |
𝑥
= Vulnerable software versions
References