CVE-2014-4522

Cross-site scripting (XSS) vulnerability in client-assist.php in the dsSearchAgent: WordPress Edition plugin 1.0-beta10 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the action parameter.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:dssearchagent_project:dssearchagent:*:beta10:-:*:-:wordpress:*:*

Information

Published : 2014-07-02 11:55

Updated : 2014-07-11 10:55


NVD link : CVE-2014-4522

Mitre link : CVE-2014-4522


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

dssearchagent_project

  • dssearchagent