CVE-2022-1932

CVE-2022-1932

The Rezgo Online Booking WordPress plugin before 4.1.8 does not sanitise and escape some parameters before outputting them back in a page, leading to a Reflected Cross-Site Scripting, which can be exploited either via a LFI in an AJAX action, or direct call to the affected file

Source: CVE-2022-1932

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다