Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-3647

Multiple cross-site scripting (XSS) vulnerabilities in wppa-ajax-front.php in the WP Photo Album Plus (aka WPPA) plugin before 6.1.3 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) comemail or (2) comname parameter in a wppa do-comment action.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.4%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2015-3647


Contact Us

Shodan ® - All rights reserved