Hosts vulnerable to CVE-2020-4049

CVE-2020-4049 — severity low, CVSS 2.4 — 3 affected hosts indexed by QROS Explore.

About CVE-2020-4049

In affected versions of WordPress, when uploading themes, the name of the theme folder can be crafted in a way that could lead to JavaScript execution in /wp-admin on the themes page. This does require an admin to upload the theme, and is low severity self-XSS. This has been patched in version 5.4.2

Showing 3 of 3 hosts, ranked by risk score.

Search all CVE-2020-4049 hosts in Explore

Open in Explore →