Vulnerabilities > CVE-2022-27859 - Unspecified vulnerability in Nicdark Nd-Travel
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
LOW Availability impact
NONE Summary
Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Nicdark d.o.o. Travel Management plugin <= 2.0 at WordPress.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- https://patchstack.com/database/vulnerability/nd-travel/wordpress-travel-management-plugin-2-0-multiple-authenticated-stored-cross-site-scripting-xss-vulnerabilities
- https://patchstack.com/database/vulnerability/nd-travel/wordpress-travel-management-plugin-2-0-multiple-authenticated-stored-cross-site-scripting-xss-vulnerabilities
- https://wordpress.org/plugins/nd-travel/
- https://wordpress.org/plugins/nd-travel/