Vik Rent Car < 1.1.7 - CSRF to Stored XSS
Vulnerability Description
In the VikRentCar Car Rental Management System WordPress plugin before 1.1.7, there is a custom filed option by which we can manage all the fields that the users will have to fill in before saving the order. However, the field name is not sanitised or escaped before being output back in the page, leading to a stored Cross-Site Scripting issue. There is also no CSRF check done before saving the setting, allowing attackers to make a logged in admin set arbitrary Custom Fields, including one with XSS payload in it.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-24388
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Satyender Yadav
More from E4J s.r.l.
View All →Affected Vendor
E4J s.r.l.
View all reports →