Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Prentiss Riddle

#52535de 53,640
4CVSS total
Vulnerabilidades · 1
PT-2023-9872
4.0
2023-04-09
Unknown · Turante Sandbox Theme · CVE-2009-10004
**Name of the Vulnerable Software and Affected Versions** Turante Sandbox Theme versions up to 1.5.2 **Description** A problematic issue was found in the Turante Sandbox Theme, affecting the `sandbox body class` function of the file functions.php. The manipulation of the `page` argument leads to cross-site scripting. It is possible to initiate the attack remotely. **Recommendations** For versions up to 1.5.2, upgrade to version 1.6.1 to address this issue. As a temporary workaround, consider restricting access to the `sandbox body class` function until the upgrade is applied.