CVE-2012-4283 Information

Description

Cross-site scripting (XSS) vulnerability in the Login With Ajax plugin before 3.0.4.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the callback parameter.

Reference

http://plugins.trac.wordpress.org/changeset/541069 http://secunia.com/advisories/49013 http://wordpress.org/extend/plugins/login-with-ajax/changelog/

Share on: