Strategy11 AWP Classifieds
cpe:2.3:a:strategy11:awp_classifieds:*:*:*:*:wordpress:*:*
- <= 4.3.5
A content injection vulnerability allowing code injection has been identified in the WordPress AWP Classifieds Plugin, affecting versions through 4.3.5. This vulnerability arises from improper neutralization of script-related HTML tags, creating a basic cross-site scripting (XSS) risk.
Exploitation of this vulnerability could allow a malicious actor to inject content into the pages and posts of a WordPress site, potentially including phishing pages.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.