mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 17:50:34 +00:00
899 B
899 B
CVE-2022-4301
Description
The Sunshine Photo Cart WordPress plugin before 2.9.15 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.
POC
Reference
- https://wpscan.com/vulnerability/a8dca528-fb70-44f3-8149-21385039179d
- https://wpscan.com/vulnerability/a8dca528-fb70-44f3-8149-21385039179d