← back
CVE-2017-17043

CVE-2017-17043

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 6.0%
exploitation probability
6.0%top 7% of all CVEs
observed exploitation
nono source reports it
The Emag Marketplace Connector plugin 1.0.0 for WordPress has reflected XSS because the parameter "post" to /wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php is not filtered correctly.
Affected products
n/a · n/a