Description
A cross-site scripting (XSS) issue in SEO Panel 4.8.0 allows remote attackers to inject JavaScript via archive.php in the "report_type" parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin One page checkout and layouts for woocommerce Unspecified Vulnerability (2.7)
MySQL CVE-2012-0486 Vulnerability (CVE-2012-0486)
WordPress Plugin Simply Static Multiple Vulnerabilities (1.7.0)
WordPress Plugin WP-Download 'dl_id' Parameter SQL Injection (1.2)
WordPress Plugin WP-Filebase Download Manager 'base' Parameter SQL Injection (0.2.9)