PT-2019-6966 · Xorbin · Wordpress Xorbin Digital Flash Clock
Published
2019-12-27
·
Updated
2020-01-04
·
CVE-2013-4693
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
WordPress Xorbin Digital Flash Clock version 1.0
Description
The issue is related to a Cross-Site Scripting (XSS) problem. XSS is a type of security vulnerability that allows an attacker to inject malicious scripts into a website, potentially leading to unauthorized access or control.
Recommendations
For WordPress Xorbin Digital Flash Clock version 1.0, update to a newer version that includes a fix for this issue, if available. As a temporary workaround, consider disabling the plugin until a patch is available. Restrict access to the plugin to minimize the risk of exploitation.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wordpress Xorbin Digital Flash Clock