CVE-2015-9368: XSS
Published Aug 28, 2019
·Updated
Easy EU Value Added (VAT) Taxes Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via addqueryarg() and removequeryarg().
Affected Software
1 affected component
iThemes Easy Eu Value Added \(vat\) Taxes Wordpress<1.2.0
Remediation
Event History
Aug 28, 2019
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2015-9368.
2
What is the severity of CVE-2015-9368?
The severity of CVE-2015-9368 is medium, with a severity value of 6.1.
3
What is the affected software for CVE-2015-9368?
The affected software for CVE-2015-9368 is the Easy EU Value Added (VAT) Taxes Add-on for iThemes Exchange before version 1.2.0 for WordPress.
4
What is the CWE ID for CVE-2015-9368?
The CWE ID for CVE-2015-9368 is CWE-79.
5
How can I fix CVE-2015-9368?
To fix CVE-2015-9368, update the Easy EU Value Added (VAT) Taxes Add-on for iThemes Exchange to version 1.2.0 or newer.