WordPress Plugin Vulnerabilities

Dokan < 3.6.4 - Vendor Stored Cross-Site Scripting

Description

The plugin allows vendors to inject arbitrary javascript in product reviews, which may allow them to run stored XSS attacks against other users like site administrators.

Proof of Concept

As a vendor, add a review in any products with following payload: <svg/onload=alert(1)>

https://youtu.be/gGUNSG5s5JU

Affects Plugins

Fixed in 3.6.4

References

YouTube Video

Classification

Type
XSS
CWE

Miscellaneous

Original Researcher
Veshraj Ghimire
Submitter
Veshraj Ghimire
Submitter website
Submitter twitter
Verified
Yes

Timeline

Publicly Published
2022-06-02 (about 1 years ago)
Added
2022-09-13 (about 1 years ago)
Last Updated
2022-09-13 (about 1 years ago)

Other