CVE-2015-10013

A vulnerability was found in WebDevStudios taxonomy-switcher Plugin up to 1.0.3 on WordPress. It has been classified as problematic. Affected is the function taxonomy_switcher_init of the file taxonomy-switcher.php. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgrading to version 1.0.4 is able to address this issue. It is recommended to upgrade the affected component. VDB-217446 is the identifier assigned to this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:webdevstudios:taxonomy_switcher:*:*:*:*:*:wordpress:*:*

History

11 Apr 2024, 00:52

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en el complemento taxonomy-switcher para WordPress de WebDevStudios hasta su versión 1.0.3. Ha sido clasificada como problemática. La función taxonomy_switcher_init del archivo taxonomy-switcher.php es afectada por la vulnerabilidad. La manipulación conduce a cross-site scripting. Es posible lanzar el ataque de forma remota. La actualización a la versión 1.0.4 puede solucionar este problema. Se recomienda actualizar el componente afectado. VDB-217446 es el identificador asignado a esta vulnerabilidad.

07 Nov 2023, 02:23

Type Values Removed Values Added
CWE CWE-79

20 Oct 2023, 08:15

Type Values Removed Values Added
Summary A vulnerability was found in WebDevStudios taxonomy-switcher Plugin up to 1.0.3. It has been classified as problematic. Affected is the function taxonomy_switcher_init of the file taxonomy-switcher.php. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgrading to version 1.0.4 is able to address this issue. It is recommended to upgrade the affected component. VDB-217446 is the identifier assigned to this vulnerability. A vulnerability was found in WebDevStudios taxonomy-switcher Plugin up to 1.0.3 on WordPress. It has been classified as problematic. Affected is the function taxonomy_switcher_init of the file taxonomy-switcher.php. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgrading to version 1.0.4 is able to address this issue. It is recommended to upgrade the affected component. VDB-217446 is the identifier assigned to this vulnerability.
CWE CWE-79

Information

Published : 2023-01-05 10:15

Updated : 2024-05-17 01:02


NVD link : CVE-2015-10013

Mitre link : CVE-2015-10013

CVE.ORG link : CVE-2015-10013


JSON object : View

Products Affected

webdevstudios

  • taxonomy_switcher
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')