Skip to content

Known CVE

AffiliateImporterEb <= 1.0.6 - Reflected XSS

AffiliateImporterEb WordPress plugin through 1.0.6 contains a reflected XSS caused by unsanitized and unescaped parameter output, letting attackers execute scripts against high privilege users such as admin, exploit requires crafted request.

CVE-2024-12732

Medium2024CVSS 6.1CWE-79

cve2024 · cr1000 · wp-scan · wordpress · wp-plugin · affiliateimportereb · authenticated · xss

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website