Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Am!R

Researcher fromIslamic Republic Of IRan Security Team
#30399of 53,633
8.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2020-7141
4.3
2020-01-10
WordPress · Pretty Links · CVE-2011-4595
**Name of the Vulnerable Software and Affected Versions** Pretty-Link WordPress plugin version 1.5.2 **Description** The issue is related to a Cross-Site Scripting (XSS) problem. XSS is a type of security vulnerability that allows an attacker to inject malicious scripts into a website, potentially leading to unauthorized access or control. **Recommendations** For Pretty-Link WordPress plugin version 1.5.2, update to a newer version that addresses the XSS issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2008-5271
4.3
2008-09-05
Unknown · Bizdirectory · CVE-2008-3941
**Name of the Vulnerable Software and Affected Versions** BizDirectory versions 2.04 and earlier **Description** A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via the `page` parameter in a search action to the default URI. This could potentially lead to unauthorized actions on the affected system. **Recommendations** For BizDirectory versions 2.04 and earlier, update to a version later than 2.04 to resolve the issue. As a temporary workaround, consider restricting access to the search action or validating and sanitizing the `page` parameter to prevent malicious input.