Vulnerabilities > CVE-2021-24329 - Unspecified vulnerability in Automattic WP Super Cache
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
LOW Availability impact
NONE Summary
The WP Super Cache WordPress plugin before 1.7.3 did not properly sanitise its wp_cache_location parameter in its settings, which could lead to a Stored Cross-Site Scripting issue.
Vulnerable Configurations
References
- https://m0ze.ru/vulnerability/%5B2021-03-23%5D-%5BWordPress%5D-%5BCWE-79%5D-WP-Super-Cache-WordPress-Plugin-v1.7.2.txt
- https://m0ze.ru/vulnerability/%5B2021-03-23%5D-%5BWordPress%5D-%5BCWE-79%5D-WP-Super-Cache-WordPress-Plugin-v1.7.2.txt
- https://wpscan.com/vulnerability/9df86d05-1408-4c22-af55-5e3d44249fd0
- https://wpscan.com/vulnerability/9df86d05-1408-4c22-af55-5e3d44249fd0