CVE-2012-6716: XSS
Published Aug 22, 2019
·Updated
The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links.
Affected Software
2 affected components
Pixelite Events Manager Wordpress<5.1.7
Wp-events-plugin Events Manager Wordpress<5.1.7
Event History
Aug 22, 2019
CVE Published
via MITRE·12:28 PM
Data Sourced
via MITRE·12:28 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of the events-manager plugin?
The vulnerability ID of the events-manager plugin is CVE-2012-6716.
2
What is the title of the vulnerability in the events-manager plugin?
The title of the vulnerability in the events-manager plugin is 'The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links.'
3
What is the severity score of CVE-2012-6716?
The severity score of CVE-2012-6716 is 6.1 (medium).
4
How does the events-manager plugin before 5.1.7 in WordPress get exploited?
The events-manager plugin before 5.1.7 in WordPress can be exploited through XSS via JSON call links.
5
How can I fix the vulnerability in the events-manager plugin?
To fix the vulnerability in the events-manager plugin, update to version 5.1.7 or higher.