Cross-site scripting (XSS) vulnerability in wp-live.php in the WP Live.php module 1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter. NOTE: some of these details are obtained from third party information.
- http://packetstormsecurity.org/files/108282/wplivephp-xss.txt
- https://github.com/20142995/nuclei-templates