Count per Day

Type: XSS
Exploit version: 3.2.5
Release Date: 03-05-2013
Status: has not been patched yet.  •

Description:
Input passed via the "daytoshow" POST parameter to wp-content/wp-admin/index.php (when "page" is set to "cpd_metaboxes") is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in the context of an affected site.

Security Information

  1. Secunia ID: http://secunia.com/advisories/52436/
  2. Credit: alejandr0.m0f0
  • Plugin statistics provided by WordPress.org. Updated within the last day or so.
  • ¹ Status info requires plugin author's to fill in versioning info on the wordpress.org repository

WPSecure For Sale

What you get:

1. Website Domain

2. Social Accounts (optional)

3. Website Files

Info: WPSecure.net is ranked PR4 by Google and gets an average 2k-3k monthly visitors. A ton a backlinks point to WPSecure because of it’s security documentation and some websites pull security posts from WPSecure.

Please email support@wpjot.com for inquiries and offers.