The WP Statistics plugin through 12.0.9 for WordPress has XSS in the rangestart and rangeend parameters on the wps_referrers_page page.
References
Configurations
History
21 Nov 2024, 03:06
Type | Values Removed | Values Added |
---|---|---|
References | () https://lorexxar.cn/2017/07/07/WordPress%20WP%20Statistics%20authenticated%20xss%20Vulnerability%28WP%20Statistics%20-=12.0.9%29/ - |
07 Nov 2023, 02:38
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2017-07-07 14:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-10991
Mitre link : CVE-2017-10991
CVE.ORG link : CVE-2017-10991
JSON object : View
Products Affected
wp-statistics
- wp_statistics
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')