WordPress WP-reCAPTCHA Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
BID:46909
Info
WordPress WP-reCAPTCHA Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
| Bugtraq ID: | 46909 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-0759 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 17 2011 12:00AM |
| Updated: | Apr 25 2011 10:43AM |
| Credit: | Gabriel Quadros |
| Vulnerable: |
Blaenk Denum WP-reCAPTCHA 2.9.8 2 |
| Not Vulnerable: |
Blaenk Denum WP-reCAPTCHA 3.0 |
Discussion
WordPress WP-reCAPTCHA Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
The WP-reCAPTCHA plugin for WordPress is prone to multiple HTML-injection vulnerabilities and a cross-site request-forgery vulnerability because it fails to properly sanitize user-supplied input.
Exploiting these issues may allow a remote attacker to perform certain administrative actions, gain unauthorized access to the affected application, delete certain data, execute arbitrary script or HTML code within the context of the browser, and steal cookie-based authentication credentials. Other attacks are also possible.
The WP-reCAPTCHA plugin for WordPress is prone to multiple HTML-injection vulnerabilities and a cross-site request-forgery vulnerability because it fails to properly sanitize user-supplied input.
Exploiting these issues may allow a remote attacker to perform certain administrative actions, gain unauthorized access to the affected application, delete certain data, execute arbitrary script or HTML code within the context of the browser, and steal cookie-based authentication credentials. Other attacks are also possible.
Exploit / POC
WordPress WP-reCAPTCHA Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
An attacker can exploit HTML-injection issues through a browser. To exploit the cross-site request-forgery issue, the attacker must entice an unsuspecting victim into viewing a malicious webpage.
An attacker can exploit HTML-injection issues through a browser. To exploit the cross-site request-forgery issue, the attacker must entice an unsuspecting victim into viewing a malicious webpage.
Solution / Fix
WordPress WP-reCAPTCHA Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
WordPress WP-reCAPTCHA Plugin HTML Injection and Cross Site Request Forgery Vulnerabilities
References:
References:
- Vendor Homepage (Blaenk Denum)
- WordPress Plugin Page (WordPress)
- WP-reCAPTCHA Changelog (WordPress)