| Title | HTML Email Template Designer < 3.1 - Stored Cross-Site Scripting |
|---|---|
| Author | hexcat |
| Severity | Medium |
| Impact | An attacker can exploit this vulnerability to inject malicious scripts into the subject field of an email template, potentially leading to unauthorized access, data theft, or further compromise of the affected system. |
| Remediation | Update to version 3.1 or later of the HTML Email Template Designer plugin to fix the vulnerability. |
| CVSS Score | 6.1 |
| EPSS Score | 0.62403 |
| CVE ID | CVE-2022-0218 |
| CWE ID | CWE-79 |
| Tags | cve cve2022 wordpress wp-plugin xss codemiq vkev vuln |
WordPress Email Template Designer WP HTML Mail allows stored cross-site scripting through an unprotected REST-API endpoint.
GET /index.php?rest_route=/whm/v3/themesettings HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Version/16.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-0218.yaml
🦈 Packet Capture: ⬇️ Download cve-2022-0218.pcap
N/AN/A