CVE-2015-9501: XSS
Published Oct 22, 2019
·Updated
The Artificial Intelligence theme before 1.2.4 for WordPress has XSS because Genericons HTML files are unnecessarily placed under the web root.
Affected Software
1 affected component
Artificial Intelligence Project Artificial Intelligence Wordpress<1.2.4
Remediation
Event History
Oct 22, 2019
CVE Published
via MITRE·09:01 PM
Data Sourced
via MITRE·09:01 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-9501?
CVE-2015-9501 has a medium severity due to its potential for XSS attacks.
2
How do I fix CVE-2015-9501?
To fix CVE-2015-9501, update the Artificial Intelligence theme to version 1.2.4 or later.
3
What are the consequences of exploiting CVE-2015-9501?
Exploiting CVE-2015-9501 can allow attackers to execute malicious scripts in the context of the user’s session.
4
What applications are affected by CVE-2015-9501?
CVE-2015-9501 affects the Artificial Intelligence theme versions prior to 1.2.4 in WordPress.
5
Is CVE-2015-9501 a widespread vulnerability?
CVE-2015-9501 affects users of an outdated version of the Artificial Intelligence theme, making it a targeted but specific threat.