CVE-2021-24746 Scanner
CVE-2021-24746 scanner - Cross-Site Scripting (XSS) vulnerability in Social Sharing plugin for WordPress
Short Info
Level
Medium
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
10 seconds
Time Interval
29 days
Scan only one
URL
Toolbox
-
The Social Sharing Plugin for WordPress is a popular tool used to help website owners increase their social media presence. It is a plugin that provides various social media sharing icons that can be integrated into blog posts or pages. Its main purpose is to make sharing website content on social media platforms easier and more accessible.
However, a vulnerability has been detected in the Social Sharing Plugin for WordPress, specifically the CVE-2021-24746 vulnerability. This vulnerability arises from the fact that this plugin fails to escape the viewed post URL before outputting it back in onclick attributes when the "Enable 'More' icon" option is enabled. This results in a Reflected Cross-Site Scripting issue that can be exploited by hackers to inject malicious scripts into websites.
Exploitation of this vulnerability can lead to serious consequences, including the theft of sensitive data from users' computers or accounts, manipulation of user-generated content, and the takeover of the entire website. Hackers can use this vulnerability to execute code on users' computers that can compromise their security and privacy, leading to a wide range of cyber attacks such as phishing, malware, and ransomware.
It is essential to protect your website against vulnerabilities that can compromise your security and put your business at risk. With the pro features of the s4e.io platform, you can easily and quickly learn about vulnerabilities in your digital assets. The platform offers advanced vulnerability scanning and reporting tools that can help you identify and fix security issues before they can be exploited by hackers. By using s4e.io, you can take control of your website's security and protect your business from cyber threats.
REFERENCES