In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor
Metrics
Affected Vendors & Products
References
History
Wed, 11 Jun 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Presstigers
Presstigers simple Job Board |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:presstigers:simple_job_board:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Presstigers
Presstigers simple Job Board |
Sat, 17 May 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 15 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you to implement Stored XSS on behalf of the editor by embedding malicious script, which entails account takeover backdoor | |
| Title | Simple Job Board < 2.12.2 - Admin+ Stored XSS | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published: 2025-05-15T20:07:11.580Z
Updated: 2025-05-17T03:33:50.132Z
Reserved: 2024-08-13T18:04:29.035Z
Link: CVE-2024-7761
Updated: 2025-05-17T03:33:45.438Z
Status : Analyzed
Published: 2025-05-15T20:15:56.937
Modified: 2025-06-11T16:23:56.157
Link: CVE-2024-7761
No data.