The Slider by 10Web WordPress plugin before 1.2.57 does not sanitise and escape its Slider Title, which could allow high privilege users such as editors and above to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed
We have discovered 6,698 live websites that are affected by CVE-2024-6408.
Product | |
Category | Wordpress Plugins |
Vulnerable Domains | 6,698 live websites (61.78% of Slider Wd install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 188 versions ( 61.84% of all versions) |
![]() | 2,332 websites |
![]() | 847 websites |
![]() | 444 websites |
![]() | 292 websites |
![]() | 268 websites |
![]() | 204 websites |
![]() | 195 websites |
![]() | 165 websites |
![]() | 159 websites |
![]() | 108 websites |
.com | 2,684 websites |
.org | 466 websites |
.de | 463 websites |
.co.uk | 197 websites |
.pl | 196 websites |
.nl | 184 websites |
.net | 182 websites |
.fr | 176 websites |
.ru | 175 websites |
.it | 138 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*******.***.gov | ![]() | **,*** | |
*********************.com | ![]() | ***,*** | |
*************.org | ![]() | ***,*** | |
****.*****.edu | ![]() | ***,*** | |
******.com | ![]() | ***,*** | |
**********************.com | ***,*** | ||
*************.it | ![]() | ***,*** | |
******************.com | ![]() | ***,*** | |
**.**********************.com | ***,*** | ||
********.nl | ![]() | ***,*** |
FAQ