CVE

Id
61411  
CVE No.
CVE-2013-1464  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in assets/player.swf in the Audio Player plugin before 2.0.4.6 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the playerID parameter.  
Phase
Assigned (20130129)  
Votes
None (candidate not yet proposed)  
Comments