"value":"The Affiliates Manager WordPress plugin before 2.9.14 does not sanitise and escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed."
},
{
"lang":"es",
"value":"El plugin Affiliates Manager de WordPress versiones anteriores a 2.9.14 no sanea y escapa de algunos de sus par\u00e1metros, lo que podr\u00eda permitir a usuarios con altos privilegios llevar a cabo ataques de Cross-Site Scripting incluso cuando la capacidad unfiltered_html est\u00e1 deshabilitada"