Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-4273 PoC — WordPress 2 Click Social Media Buttons插件跨站脚本漏洞

Source
Associated Vulnerability
Title:WordPress 2 Click Social Media Buttons插件跨站脚本漏洞 (CVE-2012-4273)
Description:WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台。该平台支持在PHP和MySQL的服务器上架设个人博客网站。 WordPress中的2 Click Social Media Buttons插件0.34之前版本中的libs/xing.php中存在跨站脚本(XSS)漏洞。远程攻击者可利用该漏洞通过xing-url参数注入任意web脚本或HTML。
Description
A cross-site scripting vulnerability in libs/xing.php in the 2 Click Social Media Buttons plugin before 0.34 for WordPress allows remote attackers to inject arbitrary web script or HTML via the xing-url parameter.
File Snapshot

id: CVE-2012-4273 info: name: 2 Click Socialmedia Buttons < 0.34 - Cross-Site Scripting author: ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.