Lucene search

K
wpvulndbHuy NguyenWPVDB-ID:651DC567-943E-4F57-8EC4-6EEE466785F5
HistorySep 28, 2021 - 12:00 a.m.

Connections Business Directory < 10.4.3 - Admin+ Stored Cross-Site Scripting

2021-09-2800:00:00
Huy Nguyen
wpscan.com
7

0.001 Low

EPSS

Percentile

24.8%

The plugin does not escape the Address settings when creating an Entry, which could allow high privilege users to perform Cross-Site Scripting when the unfiltered_html capability is disallowed.

PoC

Add an Entry (/wp-admin/admin.php?page=connections_add) and put the following payload in the Address Line fields: inval1d"> The XSS will be triggered when accessing Manage page (/wp-admin/admin.php?page=connections_manage)

CPENameOperatorVersion
connectionslt10.4.3

0.001 Low

EPSS

Percentile

24.8%

Related for WPVDB-ID:651DC567-943E-4F57-8EC4-6EEE466785F5