CVE-2015-4582

The TheCartPress boot-store (aka Boot Store) theme 1.6.4 for WordPress allows header.php tcp_register_error XSS. NOTE: CVE-2015-4582 is not assigned to any Oracle product.
Configurations

Configuration 1 (hide)

cpe:2.3:a:thecartpress:boot_store:1.6.4:*:*:*:*:wordpress:*:*

History

30 Apr 2025, 19:33

Type Values Removed Values Added
CPE cpe:2.3:a:thecartpress:boot_store:1.6.4:*:*:*:*:wordpress:*:*
First Time Thecartpress
Thecartpress boot Store
References () https://themes.trac.wordpress.org/browser/boot-store/1.6.4/header.php#L348 - () https://themes.trac.wordpress.org/browser/boot-store/1.6.4/header.php#L348 - Product

29 Apr 2025, 13:52

Type Values Removed Values Added
Summary
  • (es) TheCartPress boot-store (también conocido como Boot Store) 1.6.4 para WordPress permite el XSS header.php tcp_register_error. NOTA: CVE-2015-4582 no está asignado a ningún producto de Oracle.

28 Apr 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-28 16:15

Updated : 2025-04-30 19:33


NVD link : CVE-2015-4582

Mitre link : CVE-2015-4582

CVE.ORG link : CVE-2015-4582


JSON object : View

Products Affected

thecartpress

  • boot_store
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')