CVE-2015-9294: XSS
Published Aug 13, 2019
·Updated
The all-in-one-wp-security-and-firewall plugin before 3.9.5 for WordPress has XSS in addqueryarg and removequeryarg function instances.
Affected Software
1 affected component
Tipsandtricks-hq All In One Wp Security \& Firewall Wordpress<3.9.5
Event History
Aug 13, 2019
CVE Published
via MITRE·04:51 PM
Data Sourced
via MITRE·04:51 PM
Description
Frequently Asked Questions
1
What is CVE-2015-9294?
CVE-2015-9294 is a vulnerability found in the all-in-one-wp-security-and-firewall plugin before version 3.9.5 for WordPress.
2
What is the severity of CVE-2015-9294?
The severity of CVE-2015-9294 is medium (6.1).
3
What is the affected software for CVE-2015-9294?
The affected software for CVE-2015-9294 is the all-in-one-wp-security-and-firewall plugin before version 3.9.5 for WordPress.
4
What is the CWE ID for CVE-2015-9294?
The CWE ID for CVE-2015-9294 is 79.
5
How can I fix CVE-2015-9294?
To fix CVE-2015-9294, update the all-in-one-wp-security-and-firewall plugin to version 3.9.5 or higher.