CVE-2018-20368
EUVD-2018-1292623.12.2018, 02:29
The Master Slider plugin 3.2.7 and 3.5.1 for WordPress has XSS via the wp-admin/admin-ajax.php Name input field of the MSPanel.Settings value on Callback.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| averta | master_slider | 3.2.7 |
| averta | master_slider | 3.5.1 |
𝑥
= Vulnerable software versions