WordPress WooCommerce 2.0.17跨站脚本

2013-10-20 00:14:30 2 2943
Wordpress WooCommerce Plugin 2.0.17 Cross-Site Scripting Vulnerability

Vendor: WooThemes
Product web page: http://www.woothemes.com
Affected version: 2.0.17 and 2.0.14

Summary: WooCommerce is an open source e-commerce plugin for WordPress.

Desc: The plugin suffers from a XSS issue due to a failure to properly
sanitize(无害) user-supplied input to the 'hide-wc-extensions-message' parameter
in the 'admin/woocommerce-admin-settings.php' script. Attackers can exploit
this weakness to execute arbitrary HTML and script code in a user's browser
session.

Tested on: Microsoft Windows 7 Ultimate SP1 (EN)
           Apache 2.4.2 (Win32)
           PHP 5.4.7
           MySQL 5.5.25a


Vulnerability discovered by Gjoko 'LiquidWorm' Krstic
                            @zeroscience

Figh hive teppei ;)



Advisory ID: ZSL-2013-5156
Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2013-5156.php

Vendor: https://github.com/woothemes/woocommerce/commit/4b581450480d74667b76d6ba50961d79a6d7a0c1


13.10.2013

--


http://localhost/wordpress/wp-admin/admin.php?page=woocommerce_settings&saved=true&%22%3E%3Cscript%3Ealert%28%27ZSL%20XSS%27%29;%3C/script%3E

关于作者

President41篇文章1303篇回复西安市某部门数字化监控工程 项目监理

就那么点情绪

评论2次

要评论?请先  登录  或  注册