CVE-2014-4539
EUVD-2014-446627.12.2019, 19:15
Cross-site scripting (XSS) vulnerability in the Movies plugin 0.6 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filename parameter to getid3/demos/demo.mimeonly.php.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| movies_project | movies | 𝑥 ≤ 0.6 |
𝑥
= Vulnerable software versions