CVE-2015-2218 | Magic Hills Wonderplugin Audio Player prior 2.0 wonderpluginaudio.php wp_ajax_save_item itemid cross site scripting (EDB-36086 / BID-74851)
A vulnerability was found in Magic Hills Wonderplugin Audio Player and classified as problematic. Affected by this issue is the function wp_ajax_save_item of the file wonderpluginaudio.php. The manipulation of the argument itemid leads to cross site scripting.
This vulnerability is handled as CVE-2015-2218. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.