mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
738 B
738 B
CVE-2017-14530
Description
WP_Admin_UI in the Crony Cronjob Manager plugin before 0.4.7 for WordPress has CSRF via the name parameter in an action=manage&do=create operation, as demonstrated by inserting XSS sequences.
POC
Reference
- https://cybersecurityworks.com/zerodays/cve-2017-14530-crony.html
- https://github.com/cybersecurityworks/Disclosed/issues/9
Github
No PoCs found on GitHub currently.