From be7247bc77c743ce064323a3e5cfad1b3d10898f Mon Sep 17 00:00:00 2001 From: Prince Chaddha Date: Fri, 16 Jul 2021 10:44:57 +0530 Subject: [PATCH] Update CVE-2017-17059.yaml --- cves/2017/CVE-2017-17059.yaml | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/cves/2017/CVE-2017-17059.yaml b/cves/2017/CVE-2017-17059.yaml index 7fccdaa7b6..ecf71fafc7 100644 --- a/cves/2017/CVE-2017-17059.yaml +++ b/cves/2017/CVE-2017-17059.yaml @@ -4,7 +4,10 @@ info: name: amtyThumb posts 8.1.3 - Reflected Cross-Site Scripting (XSS) author: daffainfo severity: medium - reference: https://nvd.nist.gov/vuln/detail/CVE-2017-17059 + description: XSS exists in the amtyThumb amty-thumb-recent-post (aka amtyThumb posts or wp-thumb-post) plugin 8.1.3 for WordPress via the query string to amtyThumbPostsAdminPg.php. + reference: | + - https://github.com/NaturalIntelligence/wp-thumb-post/issues/1 + - https://nvd.nist.gov/vuln/detail/CVE-2017-17059 tags: cve,cve2017,wordpress,xss,wp-plugin requests: