CVE-2015-9421
26.09.2019, 01:15
The olevmedia-shortcodes plugin before 1.1.9 for WordPress has CSRF with resultant XSS via the wp-admin/admin-ajax.php?action=omsc_popup id parameter.
Vendor | Product | Version |
---|---|---|
olevmedia | olevmedia_shortcodes | 𝑥 < 1.1.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References