Lucene search

K
wpvulndbWpvulndbWPVDB-ID:271E9469-E746-4B50-BA41-7084218E693D
HistoryAug 31, 2020 - 12:00 a.m.

Chamber Dashboard Business Directory < 3.3.1 - Authenticated Stored Cross-Site Scripting

2020-08-3100:00:00
wpscan.com
8
chamber dashboard
cross-site scripting
authenticated
business directory
editor
admin
xss
privilege escalation
input sanitization
payload execution
vulnerability
security issue
user input
dashboard.

EPSS

0.001

Percentile

32.7%

The plugin does not sanitise user input when creating or editing a business in the dashboard, allowing high privilege users (Editor+) to set XSS payloads in various fields.

PoC

Login as an editor or admin, then add/edit a business and set the phone number as "> The payload will then be executed in the business list dashboard. Other affected fields: Country, State, Social media url, E-mail, City, Zip, Address, Location and Hours

EPSS

0.001

Percentile

32.7%

Related for WPVDB-ID:271E9469-E746-4B50-BA41-7084218E693D