CVE-2025-8314

Published
View on NVD ↗
CVSS v3
6.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT

Description

The Software Issue Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘noaccess_msg parameter in all versions up to, and including, 5.0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

<blockquote> <p><strong>LIVE DEMO SITE</strong><br /> <a href="https://simcom.emdplugins.com/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Starter Demo Site</a><br /> Powerful | Easy to use | Beautiful</p> </blockquote> <p>Software Issue Manager(SIM) is a project based bug, issue, task and product feature request tracking system with extensive built-in and custom reporting capabilities. <a href="https://emdplugins.com/software-issue-manager-wordpress-plugin/?pk_campaign=software-issue-manager&amp;pk_kwd=readme" rel="nofollow ugc">Premium editions</a> are available.<br /> If you need customer support ticketing system, try our <a href="https://wordpress.org/plugins/wp-ticket/" rel="ugc">WP Ticket plugin.</a></p> <h4>Why we developed this plugin</h4> <p>We, Emarket Design, believe that one of the most important factors affecting production of quality products is having a strong requirement management and analysis process. Most projects fail because organizations do not spend enough time on this stage of the project life cycle.<br /> By developing a family of products primarily designed for software issue management, we wanted to meet the needs of like-minded organizations as well as ours and do our share of promoting importance of requirement management and analysis process.</p> <h4>SIM Concepts</h4> <p>Issues are the items you would like to track in your projects. Issues could be tasks, feature requests, bugs or pretty much any thing you need related to your projects.</p> <p>SIM Projects are identified by a name and a version number. Projects may have unlimited number of issues. Issues can be shared by multiple projects. You can create manual issues from the admin backend by setting the author.</p> <p>All Software Issue Manager editions support open, closed or mixed projects/issues. Frontend login and registration forms are available.</p> <p>The SIM Starter edition uses built-in role based access:<br /> * Admins can access all<br /> * Editor as a project manager<br /> * Author as team member<br /> * Contributor as client</p> <p><strong>Introduction videos to get you started</strong></p> <p>Software Issue Manager &#8211; Enterprise Playlist</p> <p><span class="embed-youtube" style="text-align:center; display: block;"><iframe loading="lazy" class="youtube-player" width="750" height="422" src="https://www.youtube.com/embed/tytkvD_C9M4?version=3&#038;rel=1&#038;showsearch=0&#038;showinfo=1&#038;iv_load_policy=1&#038;fs=1&#038;hl=en-US&#038;autohide=2&#038;wmode=transparent&#038;listType=playlist&#038;list=PLxQpKElaVx8veaD3C_PESI_C4ZWcl1TQO" allowfullscreen="true" style="border:0;" sandbox="allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox"></iframe></span></p> <p>Software Issue Manager &#8211; Professional Playlist</p> <p><span class="embed-youtube" style="text-align:center; display: block;"><iframe loading="lazy" class="youtube-player" width="750" height="422" src="https://www.youtube.com/embed/idSE_1aNz4s?version=3&#038;rel=1&#038;showsearch=0&#038;showinfo=1&#038;iv_load_policy=1&#038;fs=1&#038;hl=en-US&#038;autohide=2&#038;wmode=transparent&#038;listType=playlist&#038;list=PLxQpKElaVx8uk-tzpnwnRC7WUwmE4cEXJ" allowfullscreen="true" style="border:0;" sandbox="allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox"></iframe></span></p> <p><strong>RELATED PLUGINS YOU MAY LIKE</strong></p> <ul> <li><a href="https://wpticketcom.emdplugins.com/" rel="nofollow ugc">WP Ticket Starter</a> Powerful customer support and helpdesk ticketing system.</li> <li><a href="https://requestaquote.emdplugins.com/" rel="nofollow ugc">Request a quote Starter</a> The Best Sales Quoting software for WordPress.</li> <li><a href="https://wpeasycontactcom.emdplugins.com" rel="nofollow ugc">WP Easy Contact Starter</a> Complete contact management solution to start, develop and grow your customer relationships.</li> <li><a href="https://employee-directory-com.emdplugins.com" rel="nofollow ugc">Employee Directory Starter</a> The most complete employee directory software to power up your business.</li> <li><a href="https://espotlight-com.emdplugins.com" rel="nofollow ugc">Employee Spotlight Starter</a> Everything you need to display and manage staff profiles.</li> <li><a href="https://campusdircom.emdplugins.com" rel="nofollow ugc">Campus Directory Starter</a> The Best Campus Directory for Higher Education Institutions.</li> </ul> <p><strong>Software Issue Manager &#8211; Enterprise Ready Software Project and Requirements Management</strong></p> <ul> <li><a href="https://emdplugins.com/software-issue-manager-experience-productivity-anywhere-with-software-issue-manager/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Seamless Connectivity Anywhere</a></li> <li><a href="https://emdplugins.com/software-issue-manager-schedulers-automate-time-based-workflows/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Automated and streamlined project management</a> &#8211; Premium feature (Included in Ent only)</li> <li><a href="https://emdplugins.com/software-issue-manager-do-more-faster-streamline-projects-with-triggers/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Eliminate Errors, Free Up Time</a> &#8211; Premium feature (Included in Ent only)</li> <li><a href="https://emdplugins.com/software-issue-manager-field-based-access/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Secure Your Data: Tailor Access by Field with Software Issue Manager</a> &#8211; Premium feature (Included in Ent only)</li> <li><a href="https://emdplugins.com/software-issue-manager-powerful-frontend-editing/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc"> Increased User Engagement with Powerful Frontend Editing</a> &#8211; Premium feature (Included in Ent only)</li> <li><a href="https://emdplugins.com/software-issue-manager-customize-team-access-in-minutes/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Enhanced Team Collaboration</a> &#8211; Premium feature (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-categorize-and-group/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Optimize your project management with Software Issue Manager</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-project-and-member-dashboards/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Empower Tracking for Enhanced Project Management</a> &#8211; Premium feature (Included in Ent only)</li> <li><a href="https://emdplugins.com/software-issue-manager-real-time-metrics/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Data-Driven Decisions, Delivered: Powerful Insights</a> &#8211; Premium feature (Included in Ent only)</li> <li><a href="https://emdplugins.com/software-issue-manager-powerful-search-at-your-fingertips/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc"> Effortless Search, Powerful Results</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-simplify-data-entry-simplify-projects-the-power-of-custom-forms/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Enhanced Efficiency with customizable entry forms</a> &#8211; Premium feature (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-project-members/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Addressing Bottlenecks and Driving Project Success</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-easy-to-use-widgets/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Instant access to recent issues, projects, and team members</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-enhance-efficiency-and-collaboration/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Empowering Teams with Software Issue Manager</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-simple-and-effective-issue-tracking/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Swift Issue Resolution and Budget Control</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-custom-fields/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Harnessing Custom Fields in Software Issue Manager</a> &#8211; Premium feature (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-easy-customization/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Tailor Your Workflow: Effortless Customization with Software Issue Manager</a> &#8211; Premium feature (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-create-custom-reports/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Tailored Reporting: Unlock Custom Insights with Software Issue Manager</a> &#8211; Premium feature (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-powerful-commenting-system/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Effortless Collaboration: Software Issue Manager&#8217;s Commenting System</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-role-based-content-access/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Empowering Task Focus: Role-Based Content Access in Software Issue Manager</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-keep-everyone-posted/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Instant Notifications with Software Issue Manager</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-summary-views/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Streamlined Visibility with Software Issue Manager&#8217;s Summary Views</a> &#8211; Premium feature (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-system-wide-dashboard/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Instant Project Insight: Software Issue Manager&#8217;s Dashboard</a> &#8211; Premium feature</li> <li><a href="https://emdplugins.com/software-issue-manager-microsoft-active-directory-ldap-addon/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Seamless Sync: Automate User Management with Active Directory Integration</a> &#8211; Add-on</li> <li><a href="https://emdplugins.com/software-issue-manager-smart-search-and-columns-addon/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Optimized Data Exploration: Leveraging Smart Search and Columns Addon</a> &#8211; Add-on (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-woocommerce-addon/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Smooth Sailing with WooCommerce</a> &#8211; Add-on</li> <li><a href="https://emdplugins.com/software-issue-manager-import-export-addon/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Master Data Management with Software Issue Manager&#8217;s Import/Export Addon</a> &#8211; Add-on (included both Pro and Ent)</li> <li><a href="https://emdplugins.com/software-issue-manager-easy-digital-downloads-addon/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Powerful Issue Tracking for Your Digital Products</a> &#8211; Add-on</li> <li><a href="https://emdplugins.com/software-issue-manager-incoming-email-addon/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Streamlining Issue Reporting with Incoming Email Addon</a> &#8211; Add-on (Included in Ent only)</li> </ul> <p><strong>PLUGIN LINKS</strong><br /> * <a href="https://simcom.emdplugins.com/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Starter Demo Site</a><br /> * <a href="https://docs.emdplugins.com/software-issue-manager-community/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Starter Documentation</a><br /> * <a href="https://simpro.emdplugins.com/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Professional Demo Site</a><br /> * <a href="https://docs.emdplugins.com/software-issue-manager-professional/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Professional Documentation</a><br /> * <a href="https://emdplugins.com/articles/sim-pro-wordpress-plugin-changelog/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Professional Changes</a><br /> * <a href="https://siment.emdplugins.com/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Enterprise Demo Site</a><br /> * <a href="https://docs.emdplugins.com/software-issue-manager-enterprise/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Enterprise Documentation</a><br /> * <a href="https://emdplugins.com/articles/sim-ent-wordpress-plugin-changelog/?pk_campaign=software-issue-manager-com&amp;pk_kwd=readme" rel="nofollow ugc">Software Issue Manager Enterprise Changes</a></p> <blockquote> <p>This plugin&#8217;s code was generated by <a href="https://wpappstudio.com" rel="nofollow ugc">WP App Studio</a> Professional WordPress Design and Development Platform based on the plugin&#8217;s design. You can develop a plugin like Software Issue Manager using <a href="https://wpappstudio.com/quick-start/" rel="nofollow ugc">WP App Studio</a> plugin and sell its designs by <a href="https://wpappstudio.com/become-a-selldev-author/" rel="nofollow ugc">becoming a SellDev author</a> </p> </blockquote>
WordPress Plugin DirectoryWordPress Plugin Directory
19K