Stored Cross-Site Scripting vulnerabilities in Testimonial Rotator 3.0.3 allow low privileged users (Contributor) to inject arbitrary JavaScript code or HTML without approval. This could lead to privilege escalation
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2021-04-05T18:27:42

Updated: 2024-08-03T19:21:18.620Z

Reserved: 2021-01-14T00:00:00

Link: CVE-2021-24156

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-04-05T19:15:14.780

Modified: 2021-04-08T19:22:58.877

Link: CVE-2021-24156

cve-icon Redhat

No data.