Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-20065. PoCs published by Radjnies Bhansingh.
AI-analyzed exploit summary This is a proof-of-concept for a Cross-Site Request Forgery (CSRF) vulnerability in the Popup by Supsystic WordPress plugin. The exploit demonstrates how an attacker can craft a malicious form to modify plugin settings, potentially leading to script injection.
Description
A vulnerability was found in Supsystic Popup Plugin 1.7.6 and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Exploits (1)
This is a proof-of-concept for a Cross-Site Request Forgery (CSRF) vulnerability in the Popup by Supsystic WordPress plugin. The exploit demonstrates how an attacker can craft a malicious form to modify plugin settings, potentially leading to script injection.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N