mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-25 16:47:53 +02:00
935 B
935 B
CVE-2021-24335
Description
The Car Repair Services & Auto Mechanic WordPress theme before 4.0 did not properly sanitise its serviceestimatekey search parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting issue
POC
Reference
- https://wpscan.com/vulnerability/39258aba-2449-4214-a490-b8e46945117d
- https://wpscan.com/vulnerability/39258aba-2449-4214-a490-b8e46945117d