The does not sanitise and escape some parameters when outputting them back in a page, allowing unauthenticated users the ability to perform stored Cross-Site Scripting attacks.
Metrics
Affected Vendors & Products
References
History
Tue, 25 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Tue, 25 Mar 2025 06:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The does not sanitise and escape some parameters when outputting them back in a page, allowing unauthenticated users the ability to perform stored Cross-Site Scripting attacks. | |
Title | Design Comuni Italia < 1.1.2 - Unauthenticated Stored XSS | |
References |
|

Status: PUBLISHED
Assigner: WPScan
Published: 2025-03-25T06:00:14.685Z
Updated: 2025-03-25T13:36:41.604Z
Reserved: 2025-02-28T19:59:48.968Z
Link: CVE-2025-1798

Updated: 2025-03-25T13:36:37.456Z

Status : Received
Published: 2025-03-25T06:15:40.480
Modified: 2025-03-25T14:15:27.650
Link: CVE-2025-1798

No data.