CVE-2011-4955

Multiple cross-site scripting (XSS) vulnerabilities in ui_stats.php in the bSuite plugin before 5 alpha 3 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) s or (2) p parameters to index.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bsuite_project:bsuite:*:*:*:*:*:wordpress:*:*
cpe:2.3:a:bsuite_project:bsuite:5.0:a2:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2017-12-20 22:29

Updated : 2023-12-10 12:15


NVD link : CVE-2011-4955

Mitre link : CVE-2011-4955

CVE.ORG link : CVE-2011-4955


JSON object : View

Products Affected

bsuite_project

  • bsuite
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')