CVE-2015-9396

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
20/09/2019
Last modified:
20/09/2019

Description

The auto-thickbox-plus plugin through 1.9 for WordPress has wp-content/plugins/auto-thickbox-plus/download.min.php?file= XSS.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:attosoft:auto_thickbox_plus:*:*:*:*:*:wordpress:*:* 1.9 (including)