VulnerabilityModified
CVE-2017-20089
A vulnerability was found in Gwolle Guestbook Plugin 1.7.4.
MEDIUM 6.1EPSS 0.73%
Does this matter?
Lower severity and a low EPSS score (0.73%). Track it; it rarely justifies an emergency change on its own.
Description
A vulnerability was found in Gwolle Guestbook Plugin 1.7.4. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to basic cross site scripting. The attack may be initiated remotely.
- CVSS 3.1
- 6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 0.73% probability · 52th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-80, CWE-79
- Affected
- gwolle guestbook project/gwolle guestbook
- Source
- cna@vuldb.com
References
- http://seclists.org/bugtraq/2017/Mar/1Exploit, Mailing List, Third Party Advisory
- https://vuldb.com/?id.97379Third Party Advisory, VDB Entry
- http://seclists.org/bugtraq/2017/Mar/1Exploit, Mailing List, Third Party Advisory
- https://vuldb.com/?id.97379Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.