S4E just found a high top 10 tcp port service scan
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2016-1000133 Scanner

CVE-2016-1000133 scanner - Cross-Site Scripting (XSS) vulnerability in Forget About Shortcode Buttons plugin for WordPress

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.3k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2016-1000133
6.1
CVSS

Reflected XSS in wordpress plugin forget-about-shortcode-buttons v1.1.1

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

The Forget About Shortcode Buttons plugin for WordPress is a popular plugin designed to help users create content on their website without having to use complicated shortcodes. With this plugin, users can easily insert buttons, tabs, and other useful elements into their content with just a few clicks. Its intuitive interface allows users to focus on their content rather than on navigating difficult code.

Despite its popularity, this plugin contains a serious vulnerability that was detected in 2016. CVE-2016-1000133 is a reflected XSS vulnerability that allows attackers to inject malicious code into a website through user input. This vulnerability can be exploited through a specially crafted URL or through a malicious script. Essentially, an attacker can use this vulnerability to steal sensitive information such as user credentials or personal data.

The consequences of this vulnerability can be severe. A successful exploit could allow an attacker to take over a website, steal user information, or even spread malware to other users. It is therefore important for WordPress users to be aware of this vulnerability and take steps to protect their websites.

Finally, if you are concerned about the security of your digital assets, consider using the pro features of the s4e.io platform. With this platform, you can quickly and easily learn about vulnerabilities in your website and take steps to protect against them. Don't leave your website vulnerable to attacks - take action today to keep it secure.

 

REFERENCES

Solution Advice

Fortunately, there are several precautions that can be taken to protect against this vulnerability. These include:

  • Installing security plugins such as Wordfence or Jetpack Security.
  • Keeping all WordPress plugins and themes up to date with the latest versions.
  • Using strong passwords and two-factor authentication where possible.
  • Implementing user input sanitization to prevent malicious code from being executed.
  • Regularly scanning your website for vulnerabilities and malware.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.