mirror of
https://github.com/0xMarcio/cve.git
synced 2026-02-12 18:42:46 +00:00
18 lines
765 B
Markdown
18 lines
765 B
Markdown
### [CVE-2021-24982](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-24982)
|
|

|
|

|
|
&color=brightgreen)
|
|
|
|
### Description
|
|
|
|
The Child Theme Generator WordPress plugin through 2.2.7 does not sanitise escape the parade parameter before outputting it back, leading to a Reflected Cross-Site Scripting in the admin dashboard
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://wpscan.com/vulnerability/8e53f15e-8b6a-4d47-a40d-4ebbe6934286
|
|
|
|
#### Github
|
|
- https://github.com/20142995/nuclei-templates
|
|
|