Record summary

CVE-2024-11605 has a selected CVSS score of 4.8 (medium); EIP currently links 1 catalogued exploit.

Description

The wp-publications WordPress plugin through 1.2 does not escape filenames before outputting them back in the page, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 27, 2024 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

wp-publications

Default status: affected

CVE ListThrough 1.2affected

Proofs of concept

1

Catalogued exploits

ExploitDBWP Publications WordPress Plugin 1.2 - Stored XSSExploitDB exploitby Zeynalxan QuliyevNot analyzed1 file
ExploitDB

PoC details

References

2