HTTP Response Splitting Vulnerability in Link-Log WordPress Plugin
CVE-2015-9345
7.5HIGH
Summary
The Link-Log plugin for WordPress, versions earlier than 2.0, is susceptible to an HTTP response splitting vulnerability. This flaw could allow attackers to manipulate server responses, resulting in possible exposure to cross-site scripting (XSS) attacks or cache poisoning. Website administrators using affected versions are encouraged to upgrade to the latest version to mitigate these risks and bolster their site's security.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved