Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in assets/player.swf in the Audio Player plugin before 2.0.4.6 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the playerID parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WordPress Audio Player插件跨站脚本漏洞
Vulnerability Description
Audio Player是一款MP3播放器,使用了最新的 MPEG 编码程序,播放速度快,占用系统资源少,包含一个功能很强大的播放列表编辑器。 WordPress平台上的Audio Player插件2.0.4.6之前版本中的ssets/player.swf中存在跨站脚本漏洞。远程攻击者可通过playerID参数利用该漏洞注入任意网页脚本或HTML代码。
CVSS Information
N/A
Vulnerability Type
N/A