cve/2023/CVE-2023-6141.md
2024-05-28 08:49:17 +00:00

775 B

CVE-2023-6141

Description

The Essential Real Estate WordPress plugin before 4.4.0 does not apply proper capability checks on its AJAX actions, which among other things, allow attackers with a subscriber account to conduct Stored XSS attacks.

POC

Reference

Github

No PoCs found on GitHub currently.