Page 2 of 6 results (0.003 seconds)
CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 1
CVE-2022-0211 – Shield Security < 13.0.6 - Admin+ Stored Cross-Site Scripting
https://notcve.org/view.php?id=CVE-2022-0211
The Shield Security WordPress plugin before 13.0.6 does not sanitise and escape admin notes, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed. El plugin Shield Security de WordPress versiones anteriores a 13.0.6, no sanea y escapa de las notas de administración, lo que podría permitir a usuarios con altos privilegios llevar a cabo ataques de tipo Cross-Site Scripting incluso cuando el unfiltered_html está deshabilitado • https://wpscan.com/vulnerability/0d276cca-d6eb-4f4c-83dd-fbc03254c679 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •