Best support system 3.0.4 ticket_body persistent xss (authenticated) Vulnerability / Exploit
/
/
/
Exploits / Vulnerability Discovered : 2020-11-27 |
Type : webapps |
Platform : php
This exploit / vulnerability Best support system 3.0.4 ticket_body persistent xss (authenticated) is for educational purposes only and if it is used you will do on your own risk!
[+] Code ...
# Exploit Title: Best Support System 3.0.4 - 'ticket_body' Persistent XSS (Authenticated)
# Google Dork: "Powered By Best Support System"
# Date: 2020-08-23
# Exploit Author: Ex.Mi [ https://ex-mi.ru ]
# Vendor: Appsbd [ https://appsbd.com ]
# Software Version: 3.0.4
# Software Link: https://codecanyon.net/item/best-support-systemclient-support-desk-help-centre/21357317
# Tested on: Kali Linux
# CVE: CVE-2020-24963
# CWE: CWE-79
[i] :: Info:
An Authenticated Persistent XSS vulnerability was discovered in the
Best Support System, tested version — v3.0.4.