CVE-2021-24879: SupportCandy < 2.2.7 - CSRF to Cross-Site Scripting
The SupportCandy WordPress plugin before 2.2.7 does not have CSRF check in the wpsctickets AJAX action, nor has any sanitisation or escaping in some of the filter fields which could allow attackers to make a logged in user having access to the ticket lists dashboard set an arbitrary filter (stored in their cookies) with an XSS payload in it.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-24879.
What is the severity of CVE-2021-24879?
The severity of CVE-2021-24879 is high (8.8).
What is the affected software?
The affected software is the SupportCandy WordPress plugin before version 2.2.7.
What is the vulnerability description of CVE-2021-24879?
CVE-2021-24879 is a vulnerability in the SupportCandy WordPress plugin that allows attackers to set an arbitrary filter in the ticket lists dashboard.
Is there a reference link for CVE-2021-24879?
Yes, you can find more information about CVE-2021-24879 at https://wpscan.com/vulnerability/6dfb4f61-c8cb-40ad-812f-139482be0fb4.