Unrated severityNVD Advisory· Published Mar 3, 2014· Updated Apr 29, 2026
CVE-2013-3487
CVE-2013-3487
Description
Multiple cross-site scripting (XSS) vulnerabilities in the security log in the BulletProof Security plugin before .49 for WordPress allow remote attackers to inject arbitrary web script or HTML via unspecified HTML header fields to (1) 400.php, (2) 403.php, or (3) 403.php.
Affected products
36cpe:2.3:a:ait-pro:bulletproof-security:*:*:*:*:*:*:*:*+ 35 more
- cpe:2.3:a:ait-pro:bulletproof-security:*:*:*:*:*:*:*:*range: <=.48.9
- cpe:2.3:a:ait-pro:bulletproof-security:.45.4:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.45.5:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.45.6:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.45.7:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.45.8:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.45.9:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.1:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.2:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.3:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.4:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.5:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.6:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.7:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.8:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.46.9:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.1:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.2:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.3:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.4:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.5:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.6:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.7:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.8:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.47.9:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.1:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.2:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.3:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.4:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.5:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.6:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.7:*:*:*:*:*:*:*
- cpe:2.3:a:ait-pro:bulletproof-security:.48.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7News mentions
0No linked articles in our index yet.