- Home
- Vulnerability Management
- Security Scanning
- CVE-2024-35693 Scanner
CVE-2024-35693 Scanner
Scanner for CVE-2024-35693 XSS vuln in WordPress 12 Step Meeting List plugin

CVE-2024-35693 Scanner
Scanner for CVE-2024-35693 XSS vuln in WordPress 12 Step Meeting List plugin
CVE-2024-35693 Scanner Description
CVE-2024-35693 Scanner is a security scanning tool designed to detect a Cross-Site Scripting (XSS) vulnerability in the WordPress 12 Step Meeting List Plugin. The scanner identifies a reflected XSS flaw that exists in versions up to 3.14.33 of the plugin, where attackers can inject malicious scripts through the 'tsml-query' parameter. The vulnerability allows attackers to execute scripts in the context of a user's browser by crafting malicious URLs that, when clicked by victims, can lead to theft of cookies, session tokens, and other sensitive data. The scanner performs single URL scans that can be executed by asset owners to determine if their WordPress installations are vulnerable to this specific CVE. The tool provides a medium severity rating for this vulnerability and completes scans in approximately 10 seconds. It focuses specifically on detecting improper input neutralization during web page generation in the affected WordPress plugin. The scanner helps organizations identify whether their WordPress sites running the 12 Step Meeting List Plugin are susceptible to this XSS attack vector before exploitation occurs.
CVE-2024-35693 Scanner FAQ
Common questions about CVE-2024-35693 Scanner including features, pricing, alternatives, and user reviews.
CVE-2024-35693 Scanner is Scanner for CVE-2024-35693 XSS vuln in WordPress 12 Step Meeting List plugin developed by S4E.io. It is a Vulnerability Management solution designed to help security teams with CVE, Plugin, Security Scanning.
FEATURED
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
VPN service providing encrypted internet connections and privacy protection
Fractional CISO services for B2B companies to build security programs
Stay Updated with Mandos Brief
Get the latest cybersecurity updates in your inbox
TRENDING CATEGORIES
POPULAR
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
Real-time OSINT monitoring for leaked credentials, data, and infrastructure