PT-2022-7962 · WordPress · Gwolle Guestbook Plugin
Radjnies Bhansingh
·
Published
2022-06-23
·
Updated
2022-06-29
·
CVE-2017-20089
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Gwolle Guestbook Plugin version 1.7.4
Description
A vulnerability was found in the Gwolle Guestbook Plugin. This issue affects some unknown processing and leads to basic cross site scripting. The attack may be initiated remotely.
Recommendations
For Gwolle Guestbook Plugin version 1.7.4, consider updating to a newer version to mitigate the risk of cross site scripting attacks. As a temporary workaround, restrict access to the plugin to minimize the risk of exploitation.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Gwolle Guestbook Plugin