CVE-2018-20368
23.12.2018, 02:29
The Master Slider plugin 3.2.7 and 3.5.1 for WordPress has XSS via the wp-admin/admin-ajax.php Name input field of the MSPanel.Settings value on Callback.
Vendor | Product | Version |
---|---|---|
averta | master_slider | 3.2.7 |
averta | master_slider | 3.5.1 |
𝑥
= Vulnerable software versions