Lucene search

K
wpexploitAsif Nawaz MinhasWPEX-ID:377FD65F-3A8C-4F7A-9E40-046D52EC0EEF
HistoryJul 26, 2021 - 12:00 a.m.

HD Quiz < 1.8.4 - Authenticated Stored XSS

2021-07-2600:00:00
Asif Nawaz Minhas
345

0.001 Low

EPSS

Percentile

24.8%

The plugin does not escape some of its Answers before outputting them in attribute when generating the Quiz, which could lead to Stored Cross-Site Scripting issues

Create or edit a Quiz, and put the following payload as an Answers of a "Multiple Choice: Text" Question: " autofocus onfocus=alert(/XSS/) "

Then, the XSS will be triggered when viewing a page with the embed Quiz

0.001 Low

EPSS

Percentile

24.8%

Related for WPEX-ID:377FD65F-3A8C-4F7A-9E40-046D52EC0EEF