Cross-site scripting (XSS) vulnerability in widget_remove.php in the Feedweb plugin before 1.9 for WordPress allows remote authenticated administrators to inject arbitrary web script or HTML via the wp_post_id parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2013-05-31T10:00:00Z
Updated: 2024-09-17T03:17:26.663Z
Reserved: 2013-05-30T00:00:00Z
Link: CVE-2013-3720
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-05-31T12:20:25.877
Modified: 2024-11-21T01:54:10.670
Link: CVE-2013-3720
Redhat
No data.