1 results (0.001 seconds)

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

A stored XSS vulnerability exists in the Modula Image Gallery plugin before 2.2.5 for WordPress. Successful exploitation of this vulnerability would allow an authenticated low-privileged user to inject arbitrary JavaScript code that is viewed by other users. Se presenta una vulnerabilidad de tipo XSS almacenado en el plugin Modula Image Gallery versiones anteriores a 2.2.5 para WordPress. Una explotación con éxito de esta vulnerabilidad permitiría a un usuario poco privilegiado autenticado inyectar código JavaScript arbitrario que es visualizado por otros usuarios. • https://fortiguard.com/zeroday/FG-VD-20-041 https://github.com/MachoThemes/modula-lite/blob/master/changelog.txt https://wordpress.org/plugins/modula-best-grid-gallery https://wpvulndb.com/vulnerabilities/10077 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •