Improper Neutralization of Input During Web Page Generation (XSS)
-
Hi
WPVulnerability says:Octrace Support Pro tiene una vulnerabilidad conocida que puede estar afectando a esta versión.– ≤ 1.2.7
Esta vulnerabilidad no parece tener parche. Presta atención a las próximas actualizaciones del plugin.
Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’)
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Puntuación global: 7.1 / 10
Gravedad: Alta[+]?CVE-2024-54274
[+]?WordPress HelpDesk & Support Ticket System Plugin – Octrace Support <= 1.2.7 – Reflected Cross-Site Scripting
[+]?WordPress WordPress HelpDesk & Support Ticket System Plugin – Octrace Support Plugin <= 1.2.7 is vulnerable to Cross Site Scripting (XSS)Thanks
- You must be logged in to reply to this topic.