Skip to content

Known CVE

WordPress Symposium <=15.8.1 - Cross-Site Scripting

WordPress Symposium through 15.8.1 contains a reflected cross-site scripting vulnerability via the wp-content/plugins/wp-symposium/get_album_item.php?size parameter which allows an attacker to steal cookie-based authentication credentials and launch other attacks.

CVE-2015-9414

Medium2015CVSS 6.1CWE-79

cve2015 · xss · wpscan · wordpress · wp-plugin · wpsymposiumpro · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website