Exploit for Coming Soon, Under Construction & Maintenance Mode By Dazzler < 1.6.7 - Admin+ Stored Cross-Site Scripting
Exploit Code
## https://sploitus.com/exploit?id=WPEX-ID:4BDA5DFF-F577-4CD8-A225-C6B4C32F22B4
Via the plugin's settings:
- Enable the 'Coming Soon Mode'
- Put the following payload in the Description field <svg onload=alert(/XSS/)>
Then access the frontend as a user to trigger the XSS