Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Alexander Semikashev Yandex Metrica Counter plugin <= 1.4.3 versions.
References
Link | Resource |
---|---|
https://patchstack.com/database/vulnerability/counter-yandex-metrica/wordpress-yandex-metrica-counter-plugin-1-4-3-cross-site-scripting-xss-vulnerability?_s_id=cve | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-08-30 15:15
Updated : 2023-09-01 12:38
NVD link : CVE-2023-34173
Mitre link : CVE-2023-34173
CVE.ORG link : CVE-2023-34173
JSON object : View
Products Affected
yandex_metrica_counter_project
- yandex_metric_counter
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')