CVE-2023-45005: WordPress Seriously Simple Stats Plugin <= 1.5.1 is vulnerable to Cross Site Scripting (XSS)
Published Oct 17, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Castos Seriously Simple Stats plugin <= 1.5.1 versions.
Affected Software
1 affected component
Castos Seriously Simple Stats Wordpress<=1.5.1
Remediation
Information
Update to 1.5.2 or a higher version.
Event History
Oct 17, 2023
CVE Published
via MITRE·09:05 AM
Data Sourced
via MITRE·09:05 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-45005?
CVE-2023-45005 is an Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability found in the Castos Seriously Simple Stats plugin version 1.5.1 and below.
2
How severe is CVE-2023-45005?
CVE-2023-45005 has a severity level of 6.1 (high).
3
What software is affected by CVE-2023-45005?
The Castos Seriously Simple Stats plugin version 1.5.1 and below is affected by CVE-2023-45005.
4
How can I fix CVE-2023-45005?
To fix CVE-2023-45005, update the Castos Seriously Simple Stats plugin version to 1.5.2 or above.
5
What is the CWE ID for CVE-2023-45005?
The CWE ID for CVE-2023-45005 is CWE-79 (Cross-Site Scripting).