Lucene search

K
wpexploitLana CodesWPEX-ID:5563C030-BD62-4839-98E8-84BC8191E242
HistoryNov 16, 2022 - 12:00 a.m.

WooCommerce Shipping - DPD baltic < 1.2.11 - Admin+ Stored XSS

2022-11-1600:00:00
Lana Codes
67
woocommerce
dpd baltic
stored xss
name field
payload
admin+

EPSS

0.001

Percentile

25.0%

The plugin does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

Put the following payload in the Name field of WooCommerce > Settings > DPD > Warehouses: "><script>alert(/XSS/);</script>

Fill the other fields with dummy data and save. The XSS will be triggered in all backend pages.

EPSS

0.001

Percentile

25.0%

Related for WPEX-ID:5563C030-BD62-4839-98E8-84BC8191E242