CVE-2018-20982: XSS
Published Aug 22, 2019
·Updated
The media-library-assistant plugin before 2.74 for WordPress has XSS via the Media/Assistant or Settings/Media Library assistant admin submenu screens.
Affected Software
1 affected component
Davidlingren Media Library Assistant Wordpress<2.74
Event History
Aug 22, 2019
CVE Published
via MITRE·12:58 PM
Data Sourced
via MITRE·12:58 PM
Description
Frequently Asked Questions
1
What is CVE-2018-20982?
CVE-2018-20982 is a vulnerability in the media-library-assistant plugin for WordPress which allows for cross-site scripting (XSS) attacks.
2
How severe is CVE-2018-20982?
CVE-2018-20982 has a severity rating of 6.1, which is considered medium.
3
Which software versions are affected by CVE-2018-20982?
Versions of the media-library-assistant plugin for WordPress up to and including 2.74 are affected by CVE-2018-20982.
4
How can I fix CVE-2018-20982?
To fix CVE-2018-20982, update the media-library-assistant plugin for WordPress to version 2.75 or later.
5
Where can I find more information about CVE-2018-20982?
More information about CVE-2018-20982 can be found on the official WordPress website: https://wordpress.org/plugins/media-library-assistant/#developers