PoC Index

CVE-2011-5193

LOW 2.6EPSS 4.1%

Cross-site scripting (XSS) vulnerability in vendors/samswhois/samswhois.inc.php in the Whois Search plugin 1.4.2.3 for WordPress, when the WHOIS widget is enabled, allows remote attackers to inject arbitrary web script or HTML via the domain parameter to index.php, a different vulnerability than CVE-2011-5194.

CVSS v2.0
2.6 LOWAV:N/AC:H/Au:N/C:N/I:P/A:N
EPSS
4.05% chance of exploitation in the next 30 days, 90th percentile
Published
2012-09-23
Updated
2024-09-16

ExploitDB entries (1)

References

Related