CVE-2013-6993: XSS
Cross-site scripting (XSS) vulnerability in the Ad-minister plugin 0.6 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the key parameter in a delete action to wp-admin/tools.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6993?
CVE-2013-6993 is rated as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2013-6993?
To fix CVE-2013-6993, upgrade the Ad-minister plugin to version 0.7 or later, which includes patches for this vulnerability.
What are the affected versions for CVE-2013-6993?
CVE-2013-6993 affects Ad-minister plugin versions 0.6 and earlier.
Can I use CVE-2013-6993 in a secure environment?
Using CVE-2013-6993 in a secure environment is not recommended due to its cross-site scripting vulnerability risks.
Who is affected by CVE-2013-6993?
Users of the Ad-minister plugin for WordPress, specifically those using versions 0.6 and earlier, are affected by CVE-2013-6993.