1 results (0.005 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 1

Multiple cross-site scripting (XSS) vulnerabilities in includes/metaboxes.php in the Gallery - Photo Albums - Portfolio plugin 1.3.47 for WordPress allow remote authenticated users to inject arbitrary web script or HTML via the (1) Media Title or (2) Media Subtitle fields. Múltiples vulnerabilidades de XSS en includes/metaboxes.php en el plugin Gallery - Photo Albums - Portfolio 1.3.47 en WordPress, permite a usuarios remotos autenticados inyectar secuencias de comandos web o HTML arbitrarios a través de los campos (1) Media Title o (2) Media Subtitle. • http://packetstormsecurity.com/files/133494/WordPress-Easy-Media-Gallery-1.3.47-Cross-Site-Scripting.html https://wpvulndb.com/vulnerabilities/8181 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •