Lucene search

K
wpvulndbRafael AristodimouWPVDB-ID:18FBE9D5-4829-450B-988C-8BA4BECD032A
HistoryJan 03, 2024 - 12:00 a.m.

Wp-Adv-Quiz < 1.0.3 - Admin+ Stored XSS

2024-01-0300:00:00
Rafael Aristodimou
wpscan.com
3
wordpress
xss
cross-site scripting
security vulnerability

5.1 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.0%

Description The plugin does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.

PoC

1. Add a new quiz. 2. Under the created quiz, click on “Questions”. 3. Add a question and enter a payload like “” for the question and message fields. 4. Save and see the XSS on the frontend of the site when the shortcode is added.

CPENameOperatorVersion
eq1.0.3

5.1 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.0%

Related for WPVDB-ID:18FBE9D5-4829-450B-988C-8BA4BECD032A