CVE-2017-6814
MEDIUM 5.4EPSS 2.8%
In WordPress before 4.7.3, there is authenticated Cross-Site Scripting (XSS) via Media File Metadata. This is demonstrated by both (1) mishandling of the playlist shortcode in the wp_playlist_shortcode function in wp-includes/media.php and (2) mishandling of meta information in the renderTracks function in wp-includes/js/mediaelement/wp-playlist.js.
- CVSS v3.0
- 5.4 MEDIUM
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N - CVSS v2.0
- 3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N - EPSS
- 2.82% chance of exploitation in the next 30 days, 86th percentile
- Nuclei
- low
- Published
- 2017-03-12
- Updated
- 2024-08-05
Proof-of-concept exploits (2)
- http://openwall.com/lists/oss-security/2017/03/06/8
- https://sumofpwn.nl/advisory/2016/wordpress_audio_playlist_functionality_is_affected_by_c…