Improper Authorization in Backup WordPress Site by WPvivid - #VU26324

 

Improper Authorization in Backup WordPress Site by WPvivid - #VU26324

Published: March 24, 2020


Vulnerability identifier: #VU26324
CSH Severity: Medium
CVSS v4: 7.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-285
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to bypass authorization checks.

The vulnerability exists due to missing authorization checks in the "wp_ajax_wpvivid_add_remote" AJAX action. A remote authenticated attacker can add a new remote storage location, set it as the default backup location and gain access to sensitive database information.

This vulnerability leads to CSRF issue.


Affected software

Backup WordPress Site by WPvivid

Remediation

Install updates from vendor's website.

Backup WordPress Site by WPvivid - update to 0.9.36

External References

Related Security Bulletins