CVE Database
/

CVE-2021-24176

Back to search

CVE-2021-24176

Published: Apr 5, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The JH 404 Logger WordPress plugin through 1.1 doesn't sanitise the referer and path of 404 pages, when they are output in the dashboard, which leads to executing arbitrary JavaScript code in the WordPress dashboard.

VendorProductVersions

Unknown

JH 404 Logger

affected
1.1 - <= 1.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now