WordPress Image Metadata Cruncher Cross Site Request Forgery and HTML Injection Vulnerabilities
BID:72632
Info
WordPress Image Metadata Cruncher Cross Site Request Forgery and HTML Injection Vulnerabilities
| Bugtraq ID: | 72632 |
| Class: | Input Validation Error |
| CVE: |
CVE-2015-1614 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 17 2015 12:00AM |
| Updated: | Feb 17 2015 12:00AM |
| Credit: | Kaustubh G. Padwad |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
WordPress Image Metadata Cruncher Cross Site Request Forgery and HTML Injection Vulnerabilities
Image Metadata Cruncher plugin for WordPress is prone to cross-site request-forgery and multiple HTML-injection vulnerabilities.
Exploiting these issues may allow a remote attacker to perform certain unauthorized actions, execute arbitrary script or HTML code within the context of the browser, and steal cookie-based authentication credentials. Other attacks are also possible.
Image Metadata Cruncher plugin for WordPress is prone to cross-site request-forgery and multiple HTML-injection vulnerabilities.
Exploiting these issues may allow a remote attacker to perform certain unauthorized actions, execute arbitrary script or HTML code within the context of the browser, and steal cookie-based authentication credentials. Other attacks are also possible.
Exploit / POC
WordPress Image Metadata Cruncher Cross Site Request Forgery and HTML Injection Vulnerabilities
Attackers can exploit these issues using browser. To exploit the cross-site request-forgery vulnerability, the attacker must entice an unsuspecting victim to visit a specially-crafted webpage.
Attackers can exploit these issues using browser. To exploit the cross-site request-forgery vulnerability, the attacker must entice an unsuspecting victim to visit a specially-crafted webpage.
Solution / Fix
WordPress Image Metadata Cruncher Cross Site Request Forgery and HTML Injection Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].