The TheCartPress boot-store (aka Boot Store) theme 1.6.4 for WordPress allows header.php tcp_register_error XSS. NOTE: CVE-2015-4582 is not assigned to any Oracle product.
References
Link | Resource |
---|---|
https://themes.trac.wordpress.org/browser/boot-store/1.6.4/header.php#L348 | Product |
Configurations
History
30 Apr 2025, 19:33
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:thecartpress:boot_store:1.6.4:*:*:*:*:wordpress:*:* | |
First Time |
Thecartpress
Thecartpress boot Store |
|
References | () https://themes.trac.wordpress.org/browser/boot-store/1.6.4/header.php#L348 - Product |
29 Apr 2025, 13:52
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
28 Apr 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-04-28 16:15
Updated : 2025-04-30 19:33
NVD link : CVE-2015-4582
Mitre link : CVE-2015-4582
CVE.ORG link : CVE-2015-4582
JSON object : View
Products Affected
thecartpress
- boot_store
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')