mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-28 07:12:31 +02:00
915 B
915 B
CVE-2021-24418
Description
The Smooth Scroll Page Up/Down Buttons WordPress plugin through 1.4 does not properly sanitise and validate its psb_positioning settings, allowing high privilege users such as admin to set an XSS payload in it, which will be executed in all pages of the blog
POC
Reference
- https://wpscan.com/vulnerability/1512bba9-89e2-493d-b85d-10c7acb903db
- https://wpscan.com/vulnerability/1512bba9-89e2-493d-b85d-10c7acb903db
Github
No PoCs found on GitHub currently.