WordPress Plugin Vulnerabilities

Scroll Baner <= 1.0 - CSRF to RCE

Description

The plugin does not have CSRF check in place when saving its settings, nor perform any sanitisation, escaping or validation on them. This could allow attackers to make logged in admin change them and could lead to RCE (via a file upload) as well as XSS

Proof of Concept

Affects Plugins

No known fix

References

Classification

Miscellaneous

Original Researcher
Chuang Li
Submitter
Chuang Li
Verified
Yes

Timeline

Publicly Published
2021-09-20 (about 4 years ago)
Added
2021-09-20 (about 4 years ago)
Last Updated
2022-04-08 (about 3 years ago)

Other