cleantalk
Vulnerabilities and Security Researches

WP Mailster, CVE-2017-17451

CVE, Research URL

CVE-2017-17451

Application

WP Mailster

Published on
Dec 07, 2017
Research Description
The WP Mailster plugin before 1.5.5 for WordPress has XSS in the unsubscribe handler via the mes parameter to view/subscription/unsubscribe2.php.
Affected versions
Min -, max 1.5.5.
Status
vulnerable