Event Espresso Core-Reg 4.10.7.p - Cross-Site Scripting (CVE-2020-26153)
收藏pentest-tools.com2025-03-25 收录
下载链接:
https://pentest-tools.com/vulnerabilities-exploits/undefined
下载链接
链接失效反馈官方服务:
资源简介:
Event Espresso Core-Reg 4.10.7.p is vulnerable to cross-site scripting in wp-content/plugins/event-espresso-core-reg/admin_pages/messages/templates/ee_msg_admin_overview.template.php and allows remote attackers to inject arbitrary web script or HTML via the page parameter.
Event Espresso Core-Reg 4.10.7.p 版本存在跨站脚本漏洞,该漏洞位于 wp-content/plugins/event-espresso-core-reg/admin_pages/messages/templates/ee_msg_admin_overview.template.php 文件中,并允许远程攻击者通过页面参数注入任意的网络脚本或 HTML 代码。
提供机构:
pentest-tools.com



