Description
In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-15264 | In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor |
References
History
Wed, 11 Jun 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Presstigers
Presstigers simple Job Board |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:presstigers:simple_job_board:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Presstigers
Presstigers simple Job Board |
Sat, 17 May 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 15 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor | |
| Title | Simple Job Board < 2.12.2 - Admin+ Stored XSS | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-05-17T03:33:50.132Z
Reserved: 2024-08-13T18:04:29.035Z
Link: CVE-2024-7761
Updated: 2025-05-17T03:33:45.438Z
Status : Analyzed
Published: 2025-05-15T20:15:56.937
Modified: 2025-06-11T16:23:56.157
Link: CVE-2024-7761
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD