PoC Index

CVE-2018-1002008

MEDIUM 4.8EPSS 2.6%

There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability requires administrative privileges to exploit. There is an XSS vulnerability in list-user.html.php:4: via GET request offset variable.

CVSS v3.0
4.8 MEDIUMCVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
CVSS v2.0
3.5 LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
EPSS
2.58% chance of exploitation in the next 30 days, 84th percentile
Published
2018-12-03
Updated
2024-08-05

ExploitDB entries (1)

References

Related