Advertisement






WordPress Plugin WP Customize Login 1.1 - 'Change Logo Title' Stored Cross-Site Scripting

CVE Category Price Severity
CVE-2020-35593 CWE-79 Unknown High
Author Risk Exploitation Type Date
mtpultz High Remote 2021-08-06
CPE
cpe:cpe:/a:wordpress-plugin:wp_customize_login:1.1.039
CVSS EPSS EPSSP
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N 0.039 0.8496

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2021080018

Below is a copy:

WordPress Plugin WP Customize Login 1.1 - 'Change Logo Title' Stored Cross-Site Scripting (XSS)
# Exploit Title: WordPress Plugin WP Customize Login 1.1 - 'Change Logo Title' Stored Cross-Site Scripting (XSS)
# Date: 2021-08-03
# Software Link: https://wordpress.org/plugins/customize-login/
# Version: 1.1
# Tested on: Windows 10

How to Reproduce this Vulnerability:

1. Install WordPress 5.8
2. Install and activate  WP Customize Login
3. Navigate to Customize Login under Settings Tab >>  enter the XSS payload into the Change Logo Title input field.
4. Click Save Changes.
5. You will observe that the payload successfully got stored into the database and when you are triggering the same functionality at that time JavaScript payload is executing successfully and we are getting a pop-up.
6. Payload Used: "><script>alert(document.cookie)</script>

=================================================
...::: TAPESH DIGITAL SECURITY TEAM IRAN :::... T.ME/ICTUS_TM    

Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum