CVE-2017-17043: Zitec Emag Marketplace Connector

Medium severity, CVSS 6.1. EPSS: 5.1% chance of exploitation in the next 30 days.

The Emag Marketplace Connector plugin 1.0.0 for WordPress has reflected XSS because the parameter "post" to /wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php is not filtered correctly.

Affected products

  • Zitec Emag Marketplace Connector: version 1.0.0 only

Published 2017-11-28. Last modified 2026-06-17.