logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-5653

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-5653

Description:
The WassUp Real Time Analytics WordPress plugin through 1.9.4.5 does not escape IP address provided via some headers before outputting them back in an admin page, allowing unauthenticated users to perform Stored XSS attacks against logged in admins
Last updated date:
12/04/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
12/04/2023
Reference url to background

https://wpscan.com/vulnerability/76316621-1987-44ea-83e5-6ca884bdd1c0

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy