CVE-2024-5799

All FrameworksWordPressCWE-OtherCVE-2024-5799

CVE-2024-5799

State: PUBLISHED · Published: 2024-09-12 · Updated: 2024-09-12 · Assigner: WPScan
Description
The CM Pop-Up Banners for WordPress plugin before 1.7.3 does not sanitise and escape some of its popup fields, which could allow high privilege users such as Contributors to perform Cross-Site Scripting attacks.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/5xxx/CVE-2024-5799.json