20 lines
723 B
JSON
Raw Normal View History

{
"id": "CVE-2023-5124",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-01-29T15:15:09.100",
"lastModified": "2024-01-29T16:19:17.097",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "The Page Builder: Pagelayer WordPress plugin before 1.8.0 doesn't prevent attackers with administrator privileges from inserting malicious JavaScript inside a post's header or footer code, even when unfiltered_html is disallowed, such as in multi-site WordPress configurations."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/1ef86546-3467-432c-a863-1ca3e5c65bd4/",
"source": "contact@wpscan.com"
}
]
}