Cross-Site Scripting Vulnerability in Responsive Coming Soon Page Plugin for WordPress
CVE-2018-5666
4.8MEDIUM
What is CVE-2018-5666?
A cross-site scripting vulnerability has been identified in the responsive-coming-soon-page plugin version 1.1.18 for WordPress. This issue allows attackers to inject malicious scripts via the bg_color parameter in the wp-admin/admin.php page, potentially compromising user sessions or manipulating website content. It is crucial for users of this plugin to implement security measures to mitigate the risks associated with this vulnerability.