CVE-2019-15777: XSS
Published Aug 29, 2019
·Updated
The shapepress-dsgvo plugin before 2.2.19 for WordPress has wp-admin/admin-ajax.php?action=admin-common-settings&adminemail= XSS.
Affected Software
1 affected component
shapepress Wp Dsgvo Tools Wordpress<2.2.19
Event History
Aug 29, 2019
CVE Published
via MITRE·11:49 AM
Data Sourced
via MITRE·11:49 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-15777?
CVE-2019-15777 has a medium severity rating, indicating moderate risk to affected systems.
2
How do I fix CVE-2019-15777?
To fix CVE-2019-15777, update the shapepress-dsgvo plugin to version 2.2.19 or later.
3
What kind of vulnerability is CVE-2019-15777?
CVE-2019-15777 is an XSS vulnerability affecting the shapepress-dsgvo plugin for WordPress.
4
What versions of the shapepress-dsgvo plugin are affected by CVE-2019-15777?
CVE-2019-15777 affects all versions of the shapepress-dsgvo plugin prior to 2.2.19.
5
Can CVE-2019-15777 be exploited remotely?
Yes, CVE-2019-15777 can be exploited remotely due to the nature of its XSS vulnerability.