diff --git a/cves/2021/CVE-2021-25047.yaml b/cves/2021/CVE-2021-25047.yaml index a369b2bd31..6a805c09c9 100644 --- a/cves/2021/CVE-2021-25047.yaml +++ b/cves/2021/CVE-2021-25047.yaml @@ -7,6 +7,11 @@ info: description: The plugin was affected by a reflected Cross-Site Scripting (XSS) vulnerability in the wdi_apply_changes admin page, allowing an attacker to perform such attack against any logged in users. reference: https://wpscan.com/vulnerability/d33241cc-17b6-491a-b836-dd9368652316 tags: wordpress,wp-plugin,xss + classification: + cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N + cvss-score: 6.10 + cve-id: CVE-2021-25047 + cwe-id: CWE-79 requests: - raw: