Reflected XSS in wordpress plugin defa-online-image-protector v3.3
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
http://www.vapidlabs.com/wp/wp_advisory.php?v=449 | third party advisory exploit |
https://wordpress.org/plugins/defa-online-image-protector | not applicable |
http://www.securityfocus.com/bid/93892 | vdb entry |