WP Fast Cache 1.4 and below CSRF Stored/Reflected XSS

wp fast cache

######################

# Exploit Title : WP Fast Cache 1.4 and below CSRF Stored/Reflected XSS

# Exploit Author : Claudio Viviani

# Website Author: http://www.homelab.it
                  http://archive-exploit.homelab.it/1 (Full HomelabIT Vulns Archive)
 

# Vendor Homepage : https://wordpress.org/plugins/wp-fast-cache/

# Software Link : https://downloads.wordpress.org/plugin/wp-fast-cache.1.4.zip

# Dork Google: index of wp-fast-cache

# Date : 2015-05-11

# Tested on : Windows 7 / Mozilla Firefox
#             Linux / Mozilla Firefox

######################

# Info

 WP Fast Cache is vulnerable to CSRF attacks, which can also be combined with stored/reflected XSS attacks (authenticated administrators only).

                             ----- DOWNLAOD EXPLOIT HERE -----