Cross-Site Scripting Vulnerability in Slider Revolution Plugin for WordPress
CVE-2015-5151

Currently unrated

Key Information:

Vendor
Wordpress
Vendor
CVE Published:
30 June 2015

Summary

The Slider Revolution plugin version 4.2.2 for WordPress contains a Cross-Site Scripting vulnerability that allows remote attackers to inject arbitrary web scripts or HTML. This can be exploited via the 'client_action' parameter within a 'revslider_ajax_action' call directed at 'wp-admin/admin-ajax.php', potentially allowing malicious actors to compromise website security and gain unauthorized access to sensitive information.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.