ZeroHour

CVE-2017-1000033

PoC
CVSS 3.0
6.1 medium
EPSS
2%p81
Published
()
Modified
Description

Wordpress Plugin Vospari Forms version < 1.4 is vulnerable to a reflected cross site scripting in the form submission resulting in javascript code execution in the context on the current user.

Vendors
vospari forms project
Products
vospari forms
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.