Update CVE-2017-17043.yaml

patch-1
Prince Chaddha 2021-07-16 10:50:55 +05:30 committed by GitHub
parent 5be858f2d6
commit a047cd77ff
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 1 additions and 0 deletions

View File

@ -4,6 +4,7 @@ info:
name: Emag Marketplace Connector 1.0 - Reflected Cross-Site Scripting (XSS)
author: daffainfo
severity: medium
description: The Emag Marketplace Connector plugin 1.0.0 for WordPress has reflected XSS because the parameter "post" to /wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php is not filtered correctly.
reference: https://nvd.nist.gov/vuln/detail/CVE-2017-17043
tags: cve,cve2017,wordpress,xss,wp-plugin