Skip to content

Known CVE

Login Configurator <=2.1 - Cross-Site Scripting

Login Configurator WordPress plugin <= 2.1 contains a reflected cross-site scripting caused by improper escaping of URL parameter before outputting it to the page, letting attackers execute scripts in the context of site administrators, exploit requires victim to visit a malicious URL.

CVE-2023-1893

Medium2023CVSS 6.1CWE-79

cve2023 · wp · wp-plugin · wordpress · xss · login_configurator · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website