Vulnerability Details CVE-2016-10973
The Brafton plugin before 3.4.8 for WordPress has XSS via the wp-admin/admin.php?page=BraftonArticleLoader tab parameter to BraftonAdminPage.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 79.1%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2016-10973
-
cpe:2.3:a:brafton:brafton:-
-
cpe:2.3:a:brafton:brafton:3.3.10
-
cpe:2.3:a:brafton:brafton:3.3.3
-
cpe:2.3:a:brafton:brafton:3.4.2
-
cpe:2.3:a:brafton:brafton:3.4.3
-
cpe:2.3:a:brafton:brafton:3.4.4
-
cpe:2.3:a:brafton:brafton:3.4.5
-
cpe:2.3:a:brafton:brafton:3.4.7