Medium severity6.1NVD Advisory· Published Jan 22, 2018· Updated Jun 17, 2026
CVE-2018-6002
CVE-2018-6002
Description
The Soundy Background Music plugin 3.9 and below for WordPress has Cross-Site Scripting via soundy-background-music\templates\front-end.php (war_soundy_preview parameter).
Affected products
3<=3.9+ 1 more
- (no CPE)range: <=3.9
- (no CPE)range: <=3.9
- cpe:2.3:a:webartisan:soundy_background_music:*:*:*:*:*:wordpress:*:*Range: <=3.9
Patches
Vulnerability mechanics
References
1- www.defensecode.com/advisories/DC-2018-01-001_WordPress_Soundy_Background_Music_Plugin_Advisory.pdfnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.