CVE-2013-7480: XSS
Published Aug 22, 2019
·Updated
The events-manager plugin before 5.3.6.1 for WordPress has XSS via the booking form and admin areas.
Affected Software
2 affected components
Pixelite Events Manager Wordpress<5.3.6.1
Wp-events-plugin Events Manager Wordpress<5.3.6.1
Event History
Aug 22, 2019
CVE Published
via MITRE·12:28 PM
Data Sourced
via MITRE·12:28 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2013-7480.
2
What is the title of the vulnerability?
The title of the vulnerability is 'The events-manager plugin before 5.3.6.1 for WordPress has XSS via the booking form and admin areas.'
3
How does this vulnerability affect WordPress?
This vulnerability affects WordPress through the events-manager plugin version 5.3.6.1 and earlier.
4
What is the severity of CVE-2013-7480?
CVE-2013-7480 is classified as having a medium severity with a CVSS score of 6.1.
5
How can I fix this vulnerability?
To fix this vulnerability, update the events-manager plugin to version 5.3.6.1 or later.