WordPress Shareaholic Plugin Cross Site Request Forgery Vulnerability
BID:61785
Info
WordPress Shareaholic Plugin Cross Site Request Forgery Vulnerability
| Bugtraq ID: | 61785 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 15 2013 12:00AM |
| Updated: | Aug 15 2013 12:00AM |
| Credit: | Reported by vendor. |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
WordPress Shareaholic Plugin Cross Site Request Forgery Vulnerability
Shareaholic plugin for WordPress is prone to a cross-site request-forgery vulnerability.
Exploiting this issue may allow a remote attacker to perform certain unauthorized actions in the context of the affected application. Other attacks are also possible.
Shareaholic versions prior to 7.0.3.4 are vulnerable.
Shareaholic plugin for WordPress is prone to a cross-site request-forgery vulnerability.
Exploiting this issue may allow a remote attacker to perform certain unauthorized actions in the context of the affected application. Other attacks are also possible.
Shareaholic versions prior to 7.0.3.4 are vulnerable.
Exploit / POC
WordPress Shareaholic Plugin Cross Site Request Forgery Vulnerability
To exploit this issue an attacker must entice an unsuspecting victim to open a malicious URI.
To exploit this issue an attacker must entice an unsuspecting victim to open a malicious URI.
Solution / Fix
WordPress Shareaholic Plugin Cross Site Request Forgery Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
WordPress Shareaholic Plugin Cross Site Request Forgery Vulnerability
References:
References:
- WordPress Homepage (WordPress)