Multiple cross-site scripting (XSS) vulnerabilities in js/button-snapapp.php in the SnapApp plugin 1.5 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) msg or (2) act parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2014-07-02T18:00:00

Updated: 2024-08-06T11:20:26.716Z

Reserved: 2014-06-23T00:00:00

Link: CVE-2014-4596

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-07-02T18:55:10.347

Modified: 2015-08-28T16:35:14.930

Link: CVE-2014-4596

cve-icon Redhat

No data.