Vulnerabilities
Vulnerable Software
The Crazy Bone WordPress plugin through 0.6.0 does not sanitise and escape the username submitted via the login from when displaying them back in the log dashboard, leading to an unauthenticated Stored Cross-Site scripting
CVSS Score
6.1
EPSS Score
0.063
Published
2022-02-28
The crazy-bone plugin before 0.6.0 for WordPress has XSS via the User-Agent HTTP header.
CVSS Score
6.1
EPSS Score
0.003
Published
2019-09-26


Contact Us

Shodan ® - All rights reserved