CVE-2014-4568: XSS
Published Jul 2, 2014
·Updated
Cross-site scripting (XSS) vulnerability in posts/videowhisper/rlogout.php in the Video Posts Webcam Recorder plugin 1.55.4 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the message parameter.
Affected Software
1 affected component
VideoWhisper Video Posts Webcam Recorder Wordpress<=1.55.4
Event History
Jul 2, 2014
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4568?
CVE-2014-4568 has a medium severity rating, indicating a moderate risk to affected systems.
2
How do I fix CVE-2014-4568?
To fix CVE-2014-4568, update the Video Posts Webcam Recorder plugin to a version later than 1.55.4.
3
What type of vulnerability is CVE-2014-4568?
CVE-2014-4568 is a Cross-Site Scripting (XSS) vulnerability that allows for arbitrary web script injection.
4
Who is affected by CVE-2014-4568?
CVE-2014-4568 affects users of the Video Posts Webcam Recorder plugin version 1.55.4 and earlier for WordPress.
5
Can CVE-2014-4568 be exploited remotely?
Yes, CVE-2014-4568 can be exploited remotely by attackers through the message parameter.