vendor:
Pricing Table by Supsystic
by:
Erik David Martin
7.5
CVSS
HIGH
SQLi, Stored XSS
89, 79
CWE
Product Name: Pricing Table by Supsystic
Affected Version From: 1.8.7 and 1.8.6
Affected Version To: 1.8.7 and 1.8.6
Patch Exists: YES
Related CWE: N/A
CPE: 2.3:a:supsystic:pricing_table_by_supsystic:1.8.7
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Ubuntu 16.04.6 LTS / WordPress 5.4.2
2020
WordPress Plugin Supsystic Pricing Table 1.8.7 – Multiple Vulnerabilities
The GET parameter 'sidx' does not sanitize user input when searching for existing pricing tables. The 'Edit name' and 'Edit HTML' features are vulnerable to stored XXS.
Mitigation:
Sanitize user input and validate user input before using it in the application.