Auto Generated CVE annotations [Sat Feb 19 11:28:47 UTC 2022] 🤖

patch-1
GitHub Action 2022-02-19 11:28:47 +00:00
parent 61ae4fa4b8
commit 185fe98b83
1 changed files with 5 additions and 0 deletions

View File

@ -7,6 +7,11 @@ info:
description: The plugin was affected by a reflected Cross-Site Scripting (XSS) vulnerability in the wdi_apply_changes admin page, allowing an attacker to perform such attack against any logged in users.
reference: https://wpscan.com/vulnerability/d33241cc-17b6-491a-b836-dd9368652316
tags: wordpress,wp-plugin,xss
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
cvss-score: 6.10
cve-id: CVE-2021-25047
cwe-id: CWE-79
requests:
- raw: