Record summary

CVE-2018-10310 has a selected CVSS score of 5.4 (medium); EIP currently links 1 catalogued exploit.

Description

A persistent cross-site scripting vulnerability has been identified in the web interface of the Catapult UK Cookie Consent plugin before 2.3.10 for WordPress that allows the execution of arbitrary HTML/script code in the context of a victim's browser.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBUK Cookie Consent - Persistent Cross-Site ScriptingExploitDB exploitby B0UGNot analyzed1 file
ExploitDB

PoC details

References

5