CVE-2015-9346: XSS
Published Aug 27, 2019
·Updated
The cp-polls plugin before 1.0.5 for WordPress has XSS.
Affected Software
1 affected component
CodePeople Polls Cp Wordpress<1.0.5
Event History
Aug 27, 2019
CVE Published
via MITRE·11:49 AM
Data Sourced
via MITRE·11:49 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-9346?
CVE-2015-9346 is rated as a medium severity vulnerability due to the potential for cross-site scripting (XSS).
2
How do I fix CVE-2015-9346?
To fix CVE-2015-9346, update the cp-polls plugin to version 1.0.5 or later.
3
What impacts does CVE-2015-9346 have on my website?
CVE-2015-9346 allows attackers to execute malicious scripts in the browser of users visiting the site, potentially compromising user data.
4
Is CVE-2015-9346 specific to certain versions of WordPress?
CVE-2015-9346 affects the cp-polls plugin on WordPress sites running versions prior to 1.0.5.
5
Who is affected by CVE-2015-9346?
Anyone using the cp-polls plugin for WordPress versions below 1.0.5 is vulnerable to CVE-2015-9346.