Share
## https://sploitus.com/exploit?id=WPEX-ID:13621B13-8D31-4214-A665-CB15981F3EC1
1. Go to /wp-admin/admin.php?page=ee-simple-file-list&tab=settings

2. Scroll to "File List Display".

3. In "File Description" insert the payload " onfocus="alert(1)".

4. Save and an XSS alert will be triggered when clicking on the "File Description" field after saving.

The same attack can be used against the other text fields on the page.