Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 4 min 101 bronnen 1 kritiek 33 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2014-4521

MEDIUM · 4.3 CVSS Gepubliceerd: CWE-79

Beschrijving

Cross-site scripting (XSS) vulnerability in client-assist.php in the dsIDXpress IDX plugin before 2.1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the action parameter.

Vendors

Diversesolutions

Affected products

Dsidxpress Idx Plugin

References