W3 Total Cache <= 2.1.3 - Reflected Cross-Site Scripting via extension

2021-06-28 00:00
renniepak

Strategic Overview

Status
Patched in 2.1.4
Affected PluginW3 Total Cache
Affected Version< 2.1.4
CVSS6.1Medium
CVECVE-2021-24436
View all W3 Total Cache vulnerabilities

Vulnerability Overview

The W3 Total Cache WordPress plugin before 2.1.4 was vulnerable to a reflected Cross-Site Scripting (XSS) security vulnerability within the "extension" parameter in the Extensions dashboard, which is output in an attribute without being escaped first. This could allow an attacker, who can convince an authenticated admin into clicking a link, to run malicious JavaScript within the user's web browser, which could lead to full site compromise.

Technical Analysis

REMEDIATION: Update to version 2.1.4, or a newer patched version --- IDENTIFIER: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')) The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C