CVE-2024-35693 Scanner Logo

CVE-2024-35693 Scanner

Scanner for CVE-2024-35693 XSS vuln in WordPress 12 Step Meeting List plugin

Vulnerability Management
Commercial
Visit website
Claim and verify your listing
0

CVE-2024-35693 Scanner Description

CVE-2024-35693 Scanner is a security scanning tool designed to detect a Cross-Site Scripting (XSS) vulnerability in the WordPress 12 Step Meeting List Plugin. The scanner identifies a reflected XSS flaw that exists in versions up to 3.14.33 of the plugin, where attackers can inject malicious scripts through the 'tsml-query' parameter. The vulnerability allows attackers to execute scripts in the context of a user's browser by crafting malicious URLs that, when clicked by victims, can lead to theft of cookies, session tokens, and other sensitive data. The scanner performs single URL scans that can be executed by asset owners to determine if their WordPress installations are vulnerable to this specific CVE. The tool provides a medium severity rating for this vulnerability and completes scans in approximately 10 seconds. It focuses specifically on detecting improper input neutralization during web page generation in the affected WordPress plugin. The scanner helps organizations identify whether their WordPress sites running the 12 Step Meeting List Plugin are susceptible to this XSS attack vector before exploitation occurs.

CVE-2024-35693 Scanner FAQ

Common questions about CVE-2024-35693 Scanner including features, pricing, alternatives, and user reviews.

CVE-2024-35693 Scanner is Scanner for CVE-2024-35693 XSS vuln in WordPress 12 Step Meeting List plugin developed by S4E.io. It is a Vulnerability Management solution designed to help security teams with CVE, Plugin, Security Scanning.

Have more questions? Browse our categories or search for specific tools.

FEATURED

Hudson Rock Cybercrime Intelligence Tools Logo

Cybercrime intelligence tools for searching compromised credentials from infostealers

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Logo

Fractional CISO services for B2B companies to build security programs

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

Automated vulnerability assessment and remediation platform

13
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

7
TestSavant AI Security Assurance Platform Logo

AI security assurance platform for red-teaming, guardrails & compliance

5
OSINTLeak Real-time OSINT Leak Intelligence Logo

Real-time OSINT monitoring for leaked credentials, data, and infrastructure

5
Mandos Brief Logo

Weekly cybersecurity newsletter covering security incidents, AI, and leadership

5
View Popular Tools →