Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-4065

Cross-site scripting (XSS) vulnerability in shared/shortcodes/inbound-shortcodes.php in the Landing Pages plugin before 1.8.5 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the post parameter to wp-admin/post-new.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.4%
CVSS Severity
CVSS v2 Score 3.5
Products affected by CVE-2015-4065


Contact Us

Shodan ® - All rights reserved