WP Activity Log <= 5.2.1 - Unauthenticated Stored Cross-Site Scripting via user_id Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2024-10793. PoCs published by MAHajian, djayaGit.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2024-10793, targeting a WordPress plugin vulnerability. The exploit leverages XSS to add privileged users, delete admins, and upload a shell, demonstrating full account takeover and remote code execution.
Description
The WP Activity Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user_id parameter in all versions up to, and including, 5.2.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever an administrative user accesses an injected page.
Exploits (2)
This repository contains a functional exploit for CVE-2024-10793, targeting a WordPress plugin vulnerability. The exploit leverages XSS to add privileged users, delete admins, and upload a shell, demonstrating full account takeover and remote code execution.
The repository contains a functional PoC for CVE-2024-10793, demonstrating a stored XSS vulnerability in the WP Security Audit Log plugin via the user_id parameter. The exploit script sends a malicious payload to the admin-ajax.php endpoint, while the YAML file detects the plugin's presence.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N