Vulnerabilities > Supportezzy Ticket System Project

DATE CVE VULNERABILITY TITLE RISK
2014-12-02 CVE-2014-9179 Cross-Site Scripting vulnerability in Supportezzy Ticket System Project Supportezzy Ticket System 1.2.5
Cross-site scripting (XSS) vulnerability in the SupportEzzy Ticket System plugin 1.2.5 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the "URL (optional)" field in a new ticket.
network
low complexity
supportezzy-ticket-system-project CWE-79
4.0