AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2021-24495.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSAwaiting NVD dataModified Jul 05, 2021

Disclosure summary

Credits John Github: https://github.com/johnjhacking Jackson Henry [Helped simplify the payload] Twitter: https://twitter.com/JacksonHHax Wabaf3t [Provided post-code analysis/looke

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

John J Hacking · RSS-d49e5b0cf09f6668e18e4687ff6b727a56a

Open original source · Updated Jul 05, 2021

CVE-2021-24495: Improper Neutralization of Input During Web Page Generation on ‘id’ parameter in Wordpress Marmoset Viewer Plugin versions 1.9.3 ≤ leads to Reflected Cross Site Scripting

CVE mention in publisher metadata; check the original affected versions.

Original records & references

PUBLISHED 2021-07-05T21:00:00-04:00
MODIFIED 2021-07-05T21:00:00-04:00
INGESTED 2026-10-08T12:10:46-04:00