CVE-2015-7668: XSS
Published Dec 27, 2017
·Updated
Cross-site scripting (XSS) vulnerability in includes/MapPinImageSave.php in the Easy2Map plugin before 1.3.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the mapid parameter.
Affected Software
1 affected component
Easy2map Easy2map Wordpress<1.3.0
Event History
Dec 27, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7668?
CVE-2015-7668 has been categorized as a medium-severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2015-7668?
To fix CVE-2015-7668, users should update the Easy2Map plugin to version 1.3.0 or later.
3
What type of vulnerability is CVE-2015-7668?
CVE-2015-7668 is classified as a cross-site scripting (XSS) vulnerability.
4
Who is affected by CVE-2015-7668?
CVE-2015-7668 affects users of the Easy2Map plugin for WordPress versions prior to 1.3.0.
5
What can an attacker do with CVE-2015-7668?
An attacker exploiting CVE-2015-7668 can inject arbitrary web scripts or HTML into websites using the vulnerable Easy2Map plugin.