CodeV

1 exploit Active since Apr 2014
CVE-2013-2287 EXPLOITDB text WRITEUP
Uploader 1.0.4 - Cross-Site Scripting via Notify or Blog Parameter
Multiple cross-site scripting (XSS) vulnerabilities in views/notify.php in the Uploader plugin 1.0.4 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) notify or (2) blog parameter.