Vulnerabilities (CVE)

Filtered by vendor Import Legacy Media Project Subscribe
Filtered by product Import Legacy Media
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-4535 1 Import Legacy Media Project 1 Import Legacy Media 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the Import Legacy Media plugin 0.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filename parameter to getid3/demos/demo.mimeonly.php.