CVE-2012-6627
Xyzscripts Newsletter Manager < 1.0.2 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in admin/test_mail.php in the Newsletter Manager plugin 1.0.2 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Scores
EPSS
0.0036
EPSS Percentile
57.7%
Details
CWE
CWE-79
Status
published
Products (4)
xyzscripts/newsletter_manager
< 1.0.2
xyzscripts/newsletter_manager
xyzscripts/newsletter_manager
n/a/n/a
Published
Jan 16, 2014
Tracked Since
Feb 18, 2026