1 results (0.003 seconds)

CVSS: 6.1EPSS: 8%CPEs: 43EXPL: 3

09 Apr 2013 — Cross-site scripting (XSS) vulnerability in js/ta_loaded.js.php in the Traffic Analyzer plugin, possibly 3.3.2 and earlier, for WordPress allows remote attackers to inject arbitrary web script or HTML via the aoid parameter. Vulnerabilidad Cross-site scripting (XSS) en js/ta_loaded.js.php en el plugin Traffic Analyzer, posiblemente v3.3.2 y anteriores, para WordPress permite a atacantes remotos inyectar secuencias de comandos web o HTML a través del parámetro "aoid". Cross-site scripting (XSS) vulnerability... • https://www.exploit-db.com/exploits/38439 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •