Back to search
CVE-2011-5082
Published: Mar 19, 2012
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in the s2Member Pro plugin before 111220 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s2member_pro_authnet_checkout[coupon] parameter (aka Coupon Code field).
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
47954
third-party-advisory
x_refsource_SECUNIA
51997
vdb-entry
x_refsource_BID
http://www.primothemes.com/forums/viewtopic.php?f=4&t=16173#p56982
x_refsource_CONFIRM
s2memberpro-couponcode-xss(73202)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now