CVE-2017-10991

The WP Statistics plugin through 12.0.9 for WordPress has XSS in the rangestart and rangeend parameters on the wps_referrers_page page.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wp-statistics:wp_statistics:*:*:*:*:*:wordpress:*:*

History

07 Nov 2023, 02:38

Type Values Removed Values Added
References
  • {'url': 'https://lorexxar.cn/2017/07/07/WordPress%20WP%20Statistics%20authenticated%20xss%20Vulnerability(WP%20Statistics%20-=12.0.9)/', 'name': 'https://lorexxar.cn/2017/07/07/WordPress%20WP%20Statistics%20authenticated%20xss%20Vulnerability(WP%20Statistics%20-=12.0.9)/', 'tags': [], 'refsource': 'MISC'}
  • () https://lorexxar.cn/2017/07/07/WordPress%20WP%20Statistics%20authenticated%20xss%20Vulnerability%28WP%20Statistics%20-=12.0.9%29/ -

Information

Published : 2017-07-07 14:29

Updated : 2023-12-10 12:15


NVD link : CVE-2017-10991

Mitre link : CVE-2017-10991

CVE.ORG link : CVE-2017-10991


JSON object : View

Products Affected

wp-statistics

  • wp_statistics
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')