CVE-2015-4582
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Apr 28, 2025
Updated: Apr 30, 2025
CWE ID 79
Summary
CVE-2015-4582 is a vulnerability affecting the TheCartPress boot-store theme version 1.6.4 for WordPress. This issue permits an attacker to execute a tcp_register_error Cross-Site Scripting (XSS) attack via the header.php file, potentially compromising user sessions and data. It is essential for WordPress users with theBoot Store theme to update to a patched version to prevent such attacks. Note that CVE-2015-4582 is not associated with any Oracle product.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.