7.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): REQUIRED
- Scope (S): CHANGED
- Confidentiality impact (C): LOW
- Integrity impact (I): LOW
- Availability impact (A): LOW
by @LeSuisse Activity log
- Created suggestion
- @LeSuisse ignored package emu2
- @LeSuisse dismissed
WordPress Emu2 plugin <= 0.83b - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juergen Schulze Emu2 emu2-email-users-2 allows Reflected XSS.This issue affects Emu2: from n/a through <= 0.83b.
References
Affected products
- =<<= 0.83b
Ignored packages (1)
pkgs.emu2
Simple text-mode x86 + DOS emulator
-
nixos-unstable 0.pre+unstable=2021-09-22
- nixpkgs-unstable 0.pre+unstable=2021-09-22
- nixos-unstable-small 0.pre+unstable=2021-09-22