{ "id": "CVE-2021-24656", "sourceIdentifier": "contact@wpscan.com", "published": "2021-10-11T11:15:08.957", "lastModified": "2021-10-15T16:29:06.280", "vulnStatus": "Analyzed", "descriptions": [ { "lang": "en", "value": "The Simple Social Media Share Buttons WordPress plugin before 3.2.4 does not escape the Share Title settings before outputting it in the frontend pages or posts (depending on the settings used), allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed." }, { "lang": "es", "value": "El plugin Simple Social Media Share Buttons de WordPress versiones anteriores a 3.2.4 no escapa a la configuraci\u00f3n de Share Title antes de emitirla en las p\u00e1ginas o entradas del frontend (dependiendo de la configuraci\u00f3n usada), permitiendo a usuarios con altos privilegios llevar a cabo ataques de tipo Cross-Site Scripting incluso cuando la capacidad unfiltered_html no est\u00e1 permitida" } ], "metrics": { "cvssMetricV31": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "HIGH", "userInteraction": "REQUIRED", "scope": "CHANGED", "confidentialityImpact": "LOW", "integrityImpact": "LOW", "availabilityImpact": "NONE", "baseScore": 4.8, "baseSeverity": "MEDIUM" }, "exploitabilityScore": 1.7, "impactScore": 2.7 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:M/Au:S/C:N/I:P/A:N", "accessVector": "NETWORK", "accessComplexity": "MEDIUM", "authentication": "SINGLE", "confidentialityImpact": "NONE", "integrityImpact": "PARTIAL", "availabilityImpact": "NONE", "baseScore": 3.5 }, "baseSeverity": "LOW", "exploitabilityScore": 6.8, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true } ] }, "weaknesses": [ { "source": "contact@wpscan.com", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-79" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:wpbrigade:simple_social_buttons:*:*:*:*:*:wordpress:*:*", "versionEndExcluding": "3.2.4", "matchCriteriaId": "B40839EC-835C-47EB-8B36-6926164F2B9F" } ] } ] } ], "references": [ { "url": "https://wpscan.com/vulnerability/8e897dcc-6e52-440b-83ad-b119c55751c7", "source": "contact@wpscan.com", "tags": [ "Exploit", "Third Party Advisory" ] } ] }