PT-2019-7369 · Blubrry · Blubrry Powerpress Podcasting Plugin

Sathish

·

Published

2019-09-25

·

Updated

2023-06-15

·

CVE-2015-9410

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Blubrry PowerPress Podcasting plugin version 6.0.4
Description The issue is related to a cross-site scripting (XSS) vulnerability. It occurs via the tab parameter. There is no information provided about the estimated number of potentially affected devices or real-world incidents where this issue was exploited.
Recommendations For version 6.0.4, avoid using the tab parameter in affected API endpoints until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2015-9410

Affected Products

Blubrry Powerpress Podcasting Plugin