All of the above Aapna WordPress theme through 1.3, Anand WordPress theme through 1.2, Anfaust WordPress theme through 1.1, Arendelle WordPress theme before 1.1.13, Atlast Business WordPress theme through 1.5.8.5, Bazaar Lite WordPress theme before 1.8.6, Brain Power WordPress theme through 1.2, BunnyPressLite WordPress theme before 2.1, Cafe Bistro WordPress theme before 1.1.4, College WordPress theme before 1.5.1, Connections Reloaded WordPress theme through 3.1, Counterpoint WordPress theme through 1.8.1, Digitally WordPress theme through 1.0.8, Directory WordPress theme before 3.0.2, Drop WordPress theme before 1.22, Everse WordPress theme before 1.2.4, Fashionable Store WordPress theme through 1.3.4, Fullbase WordPress theme before 1.2.1, Ilex WordPress theme before 1.4.2, Js O3 Lite WordPress theme through 1.5.8.2, Js Paper WordPress theme through 2.5.7, Kata WordPress theme before 1.2.9, Kata App WordPress theme through 1.0.5, Kata Business WordPress theme through 1.0.2, Looki Lite WordPress theme before 1.3.0, moseter WordPress theme through 1.3.1, Nokke WordPress theme before 1.2.4, Nothing Personal WordPress theme through 1.0.7, Offset Writing WordPress theme through 1.2, Opor Ayam WordPress theme through 18, Pinzolo WordPress theme before 1.2.10, Plato WordPress theme before 1.1.9, Polka Dots WordPress theme through 1.2, Purity Of Soul WordPress theme through 1.9, Restaurant PT WordPress theme before 1.1.3, Saul WordPress theme before 1.1.0, Sean Lite WordPress theme before 1.4.6, Tantyyellow WordPress theme through 1.0.0.5, TIJAJI WordPress theme through 1.43, Tiki Time WordPress theme through 1.3, Tuaug4 WordPress theme through 1.4, Tydskrif WordPress theme through 1.1.3, UltraLight WordPress theme through 1.2, Venice Lite WordPress theme before 1.5.5, Viala WordPress theme through 1.3.1, viburno WordPress theme before 1.3.2, Wedding Bride WordPress theme before 1.0.2, Wlow WordPress theme before 1.2.7 suffer from the same issue about the search box reflecting the results causing XSS which allows an unauthenticated attacker to exploit against users if they click a malicious link.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/f434afd3-7de4-4bf4-a9bb-9f9aeaae1dc5 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
07 Nov 2023, 04:13
Type | Values Removed | Values Added |
---|---|---|
CWE |
15 Sep 2023, 01:11
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:iznyn:purity_of_soul:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ayecode:cafe_bistro:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ta2g:tantyyellow:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ayecode:college:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ayecode:wedding_bride:*:*:*:*:*:wordpress:*:* cpe:2.3:a:themeinprogress:venice_lite:*:*:*:*:*:wordpress:*:* cpe:2.3:a:archimidismertzanos:nothing_personal:*:*:*:*:*:wordpress:*:* cpe:2.3:a:fredriksoerlie:ultralight:*:*:*:*:*:wordpress:*:* cpe:2.3:a:henleythemes:counterpoint:*:*:*:*:*:wordpress:*:* cpe:2.3:a:thriveweb:pinzolo:*:*:*:*:*:wordpress:*:* cpe:2.3:a:davidgarlitz:viala:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ajaydsouza:connections_reloaded:*:*:*:*:*:wordpress:*:* cpe:2.3:a:wpmole:tydskrif:*:*:*:*:*:wordpress:*:* cpe:2.3:a:marchettidesign:wlow:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ayecode:restaurant_pt:*:*:*:*:*:wordpress:*:* cpe:2.3:a:arthousewebdesign:brain_power:*:*:*:*:*:wordpress:*:* cpe:2.3:a:marchettidesign:fullbase:*:*:*:*:*:wordpress:*:* cpe:2.3:a:archimidismertzanos:atlast_business:*:*:*:*:*:wordpress:*:* cpe:2.3:a:jinwen:js_paper:*:*:*:*:*:wordpress:*:* cpe:2.3:a:dotecsa:ilex:*:*:*:*:*:wordpress:*:* cpe:2.3:a:themeinprogress:saul:*:*:*:*:*:wordpress:*:* cpe:2.3:a:fyrewurks:tiki_time:*:*:*:*:*:wordpress:*:* cpe:2.3:a:competethemes:drop:*:*:*:*:*:wordpress:*:* cpe:2.3:a:thewebhunter:anfaust:*:*:*:*:*:wordpress:*:* cpe:2.3:a:deothemes:arendelle:*:*:*:*:*:wordpress:*:* cpe:2.3:a:saumendra:anand:*:*:*:*:*:wordpress:*:* cpe:2.3:a:jinwen:js_o3_lite:*:*:*:*:*:wordpress:*:* cpe:2.3:a:iznyn:opor_ayam:*:*:*:*:*:wordpress:*:* cpe:2.3:a:themeinprogress:saul_lite:*:*:*:*:*:wordpress:*:* cpe:2.3:a:deothemes:nokke:*:*:*:*:*:wordpress:*:* cpe:2.3:a:fyrewurks:polka_dots:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ayecode:directory:*:*:*:*:*:wordpress:*:* cpe:2.3:a:yws:bunnypress_lite:*:*:*:*:*:wordpress:*:* cpe:2.3:a:themeinprogress:bazaar_lite:*:*:*:*:*:wordpress:*:* cpe:2.3:a:ayecode:plato:*:*:*:*:*:wordpress:*:* cpe:2.3:a:asmedia:moseter:*:*:*:*:*:wordpress:*:* cpe:2.3:a:saumendra:aapna:*:*:*:*:*:wordpress:*:* cpe:2.3:a:tijaji:tijaji:*:*:*:*:*:wordpress:*:* cpe:2.3:a:dotecsa:viburno:*:*:*:*:*:wordpress:*:* cpe:2.3:a:archimidismertzanos:fashionable_store:*:*:*:*:*:wordpress:*:* cpe:2.3:a:omarfolgheraiter:digitally:*:*:*:*:*:wordpress:*:* cpe:2.3:a:asmedia:tuaug4:*:*:*:*:*:wordpress:*:* cpe:2.3:a:thewebhunter:offset_writing:*:*:*:*:*:wordpress:*:* cpe:2.3:a:climaxthemes:kata:*:*:*:*:*:wordpress:*:* cpe:2.3:a:themeinprogress:looki_lite:*:*:*:*:*:wordpress:*:* cpe:2.3:a:deothemes:everse:*:*:*:*:*:wordpress:*:* |
|
First Time |
Archimidismertzanos nothing Personal
Iznyn opor Ayam Deothemes Ayecode directory Climaxthemes Thriveweb pinzolo Ajaydsouza connections Reloaded Yws Wpmole Themeinprogress venice Lite Davidgarlitz Themeinprogress looki Lite Thewebhunter Themeinprogress bazaar Lite Wpmole tydskrif Competethemes Ayecode college Henleythemes counterpoint Ayecode wedding Bride Jinwen js Paper Ayecode restaurant Pt Themeinprogress saul Lite Thriveweb Jinwen js O3 Lite Fyrewurks tiki Time Arthousewebdesign brain Power Ta2g Asmedia moseter Deothemes nokke Dotecsa viburno Fyrewurks Asmedia Marchettidesign Omarfolgheraiter Competethemes drop Arthousewebdesign Ajaydsouza Climaxthemes kata Saumendra anand Jinwen Thewebhunter anfaust Ayecode plato Deothemes everse Themeinprogress Archimidismertzanos fashionable Store Fyrewurks polka Dots Themeinprogress saul Yws bunnypress Lite Tijaji tijaji Saumendra aapna Iznyn purity Of Soul Asmedia tuaug4 Thewebhunter offset Writing Omarfolgheraiter digitally Marchettidesign fullbase Dotecsa Deothemes arendelle Saumendra Fredriksoerlie ultralight Henleythemes Tijaji Fredriksoerlie Iznyn Davidgarlitz viala Ayecode Dotecsa ilex Ayecode cafe Bistro Archimidismertzanos Marchettidesign wlow Ta2g tantyyellow Archimidismertzanos atlast Business |
|
References | (MISC) https://wpscan.com/vulnerability/f434afd3-7de4-4bf4-a9bb-9f9aeaae1dc5 - Exploit, Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
04 Sep 2023, 12:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-04 12:15
Updated : 2024-02-28 20:33
NVD link : CVE-2023-2813
Mitre link : CVE-2023-2813
CVE.ORG link : CVE-2023-2813
JSON object : View
Products Affected
ayecode
- restaurant_pt
- wedding_bride
- college
- plato
- directory
- cafe_bistro
archimidismertzanos
- nothing_personal
- atlast_business
- fashionable_store
thriveweb
- pinzolo
dotecsa
- ilex
- viburno
fyrewurks
- tiki_time
- polka_dots
saumendra
- anand
- aapna
themeinprogress
- venice_lite
- saul_lite
- looki_lite
- saul
- bazaar_lite
jinwen
- js_paper
- js_o3_lite
iznyn
- opor_ayam
- purity_of_soul
tijaji
- tijaji
deothemes
- nokke
- arendelle
- everse
asmedia
- tuaug4
- moseter
henleythemes
- counterpoint
davidgarlitz
- viala
wpmole
- tydskrif
marchettidesign
- wlow
- fullbase
thewebhunter
- anfaust
- offset_writing
ajaydsouza
- connections_reloaded
ta2g
- tantyyellow
arthousewebdesign
- brain_power
competethemes
- drop
climaxthemes
- kata
fredriksoerlie
- ultralight
yws
- bunnypress_lite
omarfolgheraiter
- digitally
CWE
No CWE.