Cross-Site Scripting Vulnerability in Slider Revolution Plugin for WordPress
CVE-2015-5151
Currently unrated
Summary
The Slider Revolution plugin version 4.2.2 for WordPress contains a Cross-Site Scripting vulnerability that allows remote attackers to inject arbitrary web scripts or HTML. This can be exploited via the 'client_action' parameter within a 'revslider_ajax_action' call directed at 'wp-admin/admin-ajax.php', potentially allowing malicious actors to compromise website security and gain unauthorized access to sensitive information.
References
Timeline
Vulnerability published
Vulnerability Reserved