WordPress Stored Cross-Site Scripting (XSS) Vulnerability
Data de publicação: 09 junho 2016
Schweregrad: : Crítico
Data do informe: 09 junho 2016
Descrição
A vulnerability was reported in WordPress and a remote user can conduct cross-site scripting attacks. The system does not properly filter HTML code from user-supplied input in Comments before displaying the input. A remote user can submit a specially crafted and long comment that, when viewed by a target user, will cause arbitrary scripting code to be executed by the target user's browser.
Exposição das informações
Apply associated Trend Micro DPI Rules.
Solução
Trend Micro Deep Security DPI Rule Number: 1000552