CVE-2015-9375: XSS
Published Aug 28, 2019
·Updated
Table Rate Shipping Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via addqueryarg() and removequeryarg().
Affected Software
1 affected component
iThemes Table Rate Shipping Wordpress<1.1.0
Event History
Aug 28, 2019
CVE Published
via MITRE·12:05 PM
Data Sourced
via MITRE·12:05 PM
Description
Frequently Asked Questions
1
What is the vulnerability identifier for Table Rate Shipping Add-on for iThemes Exchange?
The vulnerability identifier for Table Rate Shipping Add-on for iThemes Exchange is CVE-2015-9375.
2
What is the severity of CVE-2015-9375?
The severity of CVE-2015-9375 is medium.
3
How does the vulnerability in Table Rate Shipping Add-on for iThemes Exchange affect WordPress?
The vulnerability in Table Rate Shipping Add-on for iThemes Exchange affects WordPress through XSS (Cross-Site Scripting) vulnerability.
4
What is the fix for CVE-2015-9375?
To fix CVE-2015-9375, update Table Rate Shipping Add-on for iThemes Exchange to version 1.1.0 or later.
5
What is the Common Weakness Enumeration (CWE) for CVE-2015-9375?
The Common Weakness Enumeration (CWE) for CVE-2015-9375 is CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')).