PT-2023-21268 · WordPress · Daily Prayer Time

·

CVE-2023-27631

·

Publicado

2023-06-22

·

Atualizado

2024-10-04

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Daily Prayer Time plugin versions prior to 2023.05.04
Description A Stored Cross-Site Scripting (XSS) issue affects the Daily Prayer Time plugin, allowing attackers to inject malicious scripts. This issue is related to authentication and affects users with contributor or higher permissions.
Recommendations For versions prior to 2023.05.04, update to a version released after 2023.05.04 to resolve the issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-27631

Produtos afetados

Daily Prayer Time