CVE-2019-17229: XSS
includes/options.php in the motors-car-dealership-classified-listings (aka Motors - Car Dealer & Classified Ads) plugin through 1.4.0 for WordPress has multiple stored XSS issues.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-17229?
CVE-2019-17229 is a stored XSS vulnerability in the motors-car-dealership-classified-listings plugin for WordPress.
What is the severity of CVE-2019-17229?
The severity of CVE-2019-17229 is medium with a CVSS score of 6.1.
How does CVE-2019-17229 affect the motors-car-dealership-classified-listings plugin?
CVE-2019-17229 allows attackers to perform stored XSS attacks through the includes/options.php file in the motors-car-dealership-classified-listings plugin.
What is the fix for CVE-2019-17229?
To fix CVE-2019-17229, update the motors-car-dealership-classified-listings plugin to version 1.4.1 or later.
Where can I find more information about CVE-2019-17229?
You can find more information about CVE-2019-17229 [here](https://blog.nintechnet.com/multiple-vulnerabilities-in-wordpress-motors-car-dealer-classified-ads-plugin/), [here](https://wordpress.org/plugins/motors-car-dealership-classified-listings/#developers), and [here](https://wpvulndb.com/vulnerabilities/9884).