The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when booking an appointment, allowing low privilege users such as subscriber to set JavaScript in them, leading to a Stored Cross-Site Scripting (XSS) vulnerability. The Payload will then be triggered when an admin visits the "Calendar" page and the malicious script is executed in the admin context.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/e922b788-7da5-43b4-9b05-839c8610252a | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-07-12 13:15
Updated : 2021-07-15 08:20
NVD link : CVE-2021-24429
Mitre link : CVE-2021-24429
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
salonbookingsystem
- salon_booking_system