CVE-2016-6634

MEDIUM6.1EPSS 0.78%
Published: 8/7/2016Modified: 5/27/2026
Also known as:DEBIAN-CVE-2016-6634

Description

Cross-site scripting (XSS) vulnerability in the network settings page in WordPress before 4.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM6.1CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

References (1)