###################### # Exploit Title : Wordpress easy-banners.1.4 Cross Site Scripting # Exploit Author : Ashiyane Digital Security Team # Vendor Homepage : http://wordpress.org/plugins/easy-banners/ # Software Link : http://downloads.wordpress.org/plugin/easy-banners.1.4.zip # Date : 2014-06-28 # Tested on : Windows 7 / Mozilla Firefox ###################### # Location : http://localhost/wp-admin/options-general.php?page=easy-banners.php ###################### # Vulnerable code : ###################### Exploit Code: