WordPress AntiVirus Plugin Security Bypass Vulnerability
BID:60270
Info
WordPress AntiVirus Plugin Security Bypass Vulnerability
| Bugtraq ID: | 60270 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 02 2013 12:00AM |
| Updated: | Jun 02 2013 12:00AM |
| Credit: | MustLive |
| Vulnerable: |
WordPress AntiVirus 1.3.4 WordPress AntiVirus 1.1 |
| Not Vulnerable: | |
Discussion
WordPress AntiVirus Plugin Security Bypass Vulnerability
The AntiVirus plugin for WordPress is prone to a security-bypass vulnerability.
Attackers can exploit this issue to bypass certain security restrictions to perform unauthorized actions. This may aid in further attacks.
AntiVirus 1.1 to 1.3.4 are vulnerable.
The AntiVirus plugin for WordPress is prone to a security-bypass vulnerability.
Attackers can exploit this issue to bypass certain security restrictions to perform unauthorized actions. This may aid in further attacks.
AntiVirus 1.1 to 1.3.4 are vulnerable.
Exploit / POC
WordPress AntiVirus Plugin Security Bypass Vulnerability
An attacker can exploit this issue using a web browser.
An attacker can exploit this issue using a web browser.
Solution / Fix
WordPress AntiVirus Plugin Security Bypass Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
WordPress AntiVirus Plugin Security Bypass Vulnerability
References:
References:
- FPD and Security bypass vulnerabilities in AntiVirus for WordPress (Fulldisclosure)
- WordPress AntiVirus Plugin HomePage (Sergej Müller)
- WordPress Homepage (WordPress)