WordPress Google Captcha (reCAPTCHA) by BestWebSoft Plugin Authentication Bypass Vulnerability
BID:72934
Info
WordPress Google Captcha (reCAPTCHA) by BestWebSoft Plugin Authentication Bypass Vulnerability
| Bugtraq ID: | 72934 |
| Class: | Design Error |
| CVE: |
CVE-2015-0890 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 03 2015 12:00AM |
| Updated: | Mar 03 2015 12:00AM |
| Credit: | JPCERT |
| Vulnerable: |
BestWebSoft Google Captcha (reCAPTCHA) by BestWebSoft 1.12 BestWebSoft Google Captcha (reCAPTCHA) by BestWebSoft 1.10 |
| Not Vulnerable: |
BestWebSoft Google Captcha (reCAPTCHA) by BestWebSoft 1.13 |
Exploit / POC
WordPress Google Captcha (reCAPTCHA) by BestWebSoft Plugin Authentication Bypass Vulnerability
Attackers can exploit this issue through readily available tools.
Attackers can exploit this issue through readily available tools.
References
WordPress Google Captcha (reCAPTCHA) by BestWebSoft Plugin Authentication Bypass Vulnerability
References:
References:
- Captcha Changelog (Captcha)
- Captcha Homepage (WordPress)
- BestWebSoft Captcha plugin vulnerable to CAPTCHA authentication bypass (JPCERT)