1 results (0.002 seconds)
CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 1

CVE-2008-0206 – Captcha! <= 2.5d - Cross-Site Scripting
https://notcve.org/view.php?id=CVE-2008-0206
26 Nov 2007 — Multiple cross-site scripting (XSS) vulnerabilities in captcha\captcha.php in the Captcha! 2.5d and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) captcha_ttffolder, (2) captcha_numchars, (3) captcha_ttfrange, or (4) captcha_secret parameter. Múltiples vulnerabilidades de secuencias de comandos en sitios cruzados (XSS) en captcha\captcha.php del componente (plugin) Captcha! 2.5d y anteriores para WordPress permite a atacantes remotos inyectar secuencia... • http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •