RSS   Vulnerabilities for 'Shareaholic'   RSS

2015-04-14
 
CVE-2014-9311

 

 
Cross-site scripting (XSS) vulnerability in admin.php in the Shareaholic plugin before 7.6.1.0 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the location[id] parameter in a shareaholic_add_location action to wp-admin/admin-ajax.php.

 

 >>> Vendor: Shareaholic 3 Products
Sexybookmarks
Shareaholic
Similar posts


Copyright 2024, cxsecurity.com

 

Back to Top