Home

Description

The "Add Link to Facebook" plugin through 2.3 for WordPress has XSS via the al2fb_facebook_id parameter to wp-admin/profile.php.

PUBLISHED Reserved 2018-01-04 | Published 2018-01-04 | Updated 2024-08-05 | Assigner mitre

References

wordpress.org/...the-latest-version-of-add-link-to-facebook/

github.com/...ies-Report/blob/master/Add-Link-to-Facebook.md

wordpress.org/...the-latest-version-of-add-link-to-facebook/

github.com/...ies-Report/blob/master/Add-Link-to-Facebook.md

cve.org (CVE-2018-5214)

nvd.nist.gov (CVE-2018-5214)

Download JSON