Input validation vulnerability in IMPress for IDX Broker 3.0.6

The IMPress for IDX Broker plugin for WordPress is not secure in versions 3.0.5 and earlier. It can be exploited by unauthenticated attackers to inject malicious web scripts in to pages, which can then be used to carry out malicious actions if a user is tricked into clicking on a link. This is due to the plugin not properly filtering and escaping data that is inputted and outputted.

Detected in:

IMPress for IDX Broker fixed vulnerable versions: >= * < 3.0.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.