Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2013-0734


Multiple cross-site scripting (XSS) vulnerabilities in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) search_words parameter in a search action to wpf.class.php or (2) togroupusers parameter in an add_user_togroup action to fs-admin/fs-admin.php.


Published

2014-03-28T15:55:08.327

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.3 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:P/A:N

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: NONE
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application cartpauj mingle-forum ≤ 1.0.33 Yes
Application cartpauj mingle-forum 1.0.00 Yes
Application cartpauj mingle-forum 1.0.01 Yes
Application cartpauj mingle-forum 1.0.02 Yes
Application cartpauj mingle-forum 1.0.03 Yes
Application cartpauj mingle-forum 1.0.04 Yes
Application cartpauj mingle-forum 1.0.05 Yes
Application cartpauj mingle-forum 1.0.06 Yes
Application cartpauj mingle-forum 1.0.07 Yes
Application cartpauj mingle-forum 1.0.08 Yes
Application cartpauj mingle-forum 1.0.09 Yes
Application cartpauj mingle-forum 1.0.10 Yes
Application cartpauj mingle-forum 1.0.11 Yes
Application cartpauj mingle-forum 1.0.12 Yes
Application cartpauj mingle-forum 1.0.13 Yes
Application cartpauj mingle-forum 1.0.14 Yes
Application cartpauj mingle-forum 1.0.15 Yes
Application cartpauj mingle-forum 1.0.16 Yes
Application cartpauj mingle-forum 1.0.17 Yes
Application cartpauj mingle-forum 1.0.18 Yes
Application cartpauj mingle-forum 1.0.19 Yes
Application cartpauj mingle-forum 1.0.20 Yes
Application cartpauj mingle-forum 1.0.21 Yes
Application cartpauj mingle-forum 1.0.21.1 Yes
Application cartpauj mingle-forum 1.0.22 Yes
Application cartpauj mingle-forum 1.0.23 Yes
Application cartpauj mingle-forum 1.0.23.1 Yes
Application cartpauj mingle-forum 1.0.23.2 Yes
Application cartpauj mingle-forum 1.0.24 Yes
Application cartpauj mingle-forum 1.0.25 Yes
Application cartpauj mingle-forum 1.0.26 Yes
Application cartpauj mingle-forum 1.0.27 Yes
Application cartpauj mingle-forum 1.0.28 Yes
Application cartpauj mingle-forum 1.0.28.1 Yes
Application cartpauj mingle-forum 1.0.28.2 Yes
Application cartpauj mingle-forum 1.0.29 Yes
Application cartpauj mingle-forum 1.0.30 Yes
Application cartpauj mingle-forum 1.0.31 Yes
Application cartpauj mingle-forum 1.0.31.1 Yes
Application cartpauj mingle-forum 1.0.31.2 Yes
Application cartpauj mingle-forum 1.0.31.3 Yes
Application cartpauj mingle-forum 1.0.31.4 Yes
Application cartpauj mingle-forum 1.0.32 Yes
Application cartpauj mingle-forum 1.0.32.1 Yes
Application wordpress wordpress - No

References