WordPress XSS2Shell Flaw Turns Simple Login Bug Into Full Server Takeover
ID: d569e90e-5c85-5f39-b127-6d73b69ddecb
STIX ID: report--d569e90e-5c85-5f39-b127-6d73b69ddecb
Feed Name: Security Affairs
Threat Score
WordPress XSS2Shell is a pre-auth, no-interaction vulnerability chain that leverages inconsistent sanitization (strip_tags vs wp_kses_post), DOM clobbering via injected elements (e.g., <area id="ajaxurl">), and REST API JSONP behavior to obtain an admin Application Password and upload a plugin, achieving remote code execution on stock WordPress installs; patches were released (including backports to 4.7) and administrators should update immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
