Skip to content

Known CVE

Import Legacy Media <= 0.1 - Cross-Site Scripting

A cross-site scripting vulnerability in the Import Legacy Media plugin 0.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filename parameter to getid3/demos/demo.mimeonly.php.

CVE-2014-4535

Medium2014CVSS 6.1CWE-79

cve2014 · wpscan · wordpress · wp-plugin · xss · unauth · import_legacy_media_project · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website