First published: Fri May 12 2023(Updated: )
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CodeSolz Easy Ad Manager plugin <= 1.0.0 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Easy Ad-manager | <=1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25460 is categorized as a high severity vulnerability due to its potential for exploitation through stored cross-site scripting.
To fix CVE-2023-25460, you should update the CodeSolz Easy Ad Manager plugin to a version beyond 1.0.0.
CVE-2023-25460 allows authenticated attackers to execute arbitrary JavaScript in the context of users visiting the affected site.
Yes, CVE-2023-25460 affects versions of the Easy Ad Manager plugin up to and including 1.0.0.
Any site using CodeSolz Easy Ad Manager plugin versions 1.0.0 or earlier is potentially vulnerable to CVE-2023-25460.