Input validation vulnerability in Admin Pack by SITE CASEIRO 1.1

The Admin Pack by SITE CASEIRO plugin for WordPress is vulnerable to a type of cyber attack called Stored Cross-Site Scripting. This happens when a malicious user is able to inject web scripts into pages that can be accessed by other users. The vulnerability exists in versions of the plugin up to and including 1.1, as the plugin does not properly sanitize input or escape output. As a result, authenticated attackers with Admin+ privileges can use this vulnerability to inject their own web scripts into pages.

Detected in:

Admin Pack by SITE CASEIRO open vulnerable versions: >= * <= 1.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.