header-logo
Suggest Exploit
vendor:
RSVPMaker
by:
Chris Kellum
7,5
CVSS
HIGH
Persistent XSS
79
CWE
Product Name: RSVPMaker
Affected Version From: 2.5.4
Affected Version To: 2.5.4
Patch Exists: YES
Related CWE: N/A
CPE: a:wordpress:rsvpmaker
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2012

WordPress RSVPMaker v2.5.4 Persistent XSS

The RSVP form does not properly sanitize input fields, allowing for XSS. Plugin appears to escape apostrophes and quotes, but this can easily be circumvented. XSS will fire when the admin views the event's attendance list in the RSVP report section.

Mitigation:

Sanitize input fields properly.
Source

Exploit-DB raw data:

# Exploit Title: WordPress RSVPMaker v2.5.4 Persistent XSS
# Date: 8/12/12
# Exploit Author: Chris Kellum
# Vendor Homepage: http://rsvpmaker.com/
# Software Link: http://downloads.wordpress.org/plugin/rsvpmaker.zip
# Version: 2.5.4



=====================
Vulnerability Details
=====================

The RSVP form does not properly sanitize input fields, allowing for XSS.

     Example:

          <script>alert(/xss/)</script>

Plugin appears to escape apostrophes and quotes, but this can easily be circumvented.

XSS will fire when the admin views the event's attendance list in the RSVP report section.

===================
Disclosure Timeline
===================

8/4/12 - Vulnerability discovered.
8/4/12 - Vendor notified.
8/10/12 - Version 2.5.5 released.
8/12/12 - Public disclosure.