blog.51cto.com
http://blog.51cto.com/010bjsoft/2171087 CVE-2018-16363
MEDIUMNuclei
WordPress File Manager < 3.0 - Cross-Site Scripting
Record summary
CVE-2018-16363 has a selected CVSS score of 5.4 (medium); EIP currently links 1 Nuclei template.
Description
The mndpsingh287 File Manager plugin V2.9 for WordPress has XSS via the lang parameter in a wp-admin/admin.php?page=wp_file_manager request because set_transient is used in file_folder_manager.php and there is an echo of lang in lib\wpfilemanager.php.
Description source: CVE List
Exploitation context
Available material
- Nuclei templates
- 1
Nuclei templates
1ProjectDiscoveryMEDIUMWordPress File Manager < 3.0 - Cross-Site Scripting
WordPress File Manager plugin before 3.0 is vulnerable to authenticated reflected cross-site scripting (XSS) via the lang parameter in the admin dashboard. The parameter is directly echoed into a JavaScript context without proper sanitization.
AuthorsShivam Kamboj
Template tagscvecve2018xsswp-file-managerwordpresswpauthenticated
https://nvd.nist.gov/vuln/detail/CVE-2018-16363 https://wpscan.com/vulnerability/65e4849b-6517-400d-884f-65234f58ab0c/ https://plugins.trac.wordpress.org/changeset/1936043 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16363
Source: ProjectDiscovery
References
5nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-16363 plugins.trac.wordpress.org
https://plugins.trac.wordpress.org/changeset/1936043 wordpress.orgConfirmation
https://wordpress.org/support/topic/security-concern-6 wpvulndb.com
https://wpvulndb.com/vulnerabilities/9126