CyberRota Analysis
AI-GeneratedThe ProSolution WP Client plugin for WordPress versions prior to 2.0.11 is vulnerable to reflected Cross-Site Scripting due to improper sanitization and escaping of a parameter in an administrative page's HTML attribute. This vulnerability allows an attacker to execute malicious scripts in the context of an administrator's session, potentially compromising the site. WordPress administrators using this plugin should prioritize updating to the latest version to mitigate the risk.
Original NVD Description
The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape a parameter before reflecting it into an HTML attribute on one of its administrative pages, leading to reflected Cross-Site Scripting that runs in the session of an administrator induced to submit a crafted request.