Reflected XSS Vulnerability in Easy Social Share Buttons
CVE-2024-30196
7.1HIGH
Summary
The Easy Social Share Buttons by Appscreo is affected by a Cross-site Scripting (XSS) vulnerability, allowing for improper neutralization of input during web page generation. Specifically, the vulnerability enables reflected XSS attacks that compromise the security of the web application utilizing this plugin. Users of Easy Social Share Buttons versions from n/a through 9.4 should be aware of this security issue to mitigate risks associated with potential exploitation.
Affected Version(s)
Easy Social Share Buttons <= 9.4
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Rafie Muhammad (Patchstack)