cve/2019/CVE-2019-17550.md
2024-06-09 00:33:16 +00:00

875 B

CVE-2019-17550

Description

The Blog2Social plugin before 5.9.0 for WordPress is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to execute arbitrary HTML and JavaScript code via the b2s_id parameter. The component is: views/b2s/post.calendar.php. The attack vector is: When the Administrator is logged in, a reflected XSS may execute upon a click on a malicious URL.

POC

Reference

Github

No PoCs found on GitHub currently.