漏洞标题
Shopwarden – Automated WooCommerce 监控及测试 <= 1.0.11 版跨站请求伪造漏洞可导致任意选项更新
漏洞描述信息
WordPress插件Shopwarden – Automated WooCommerce monitoring & testing的所有版本(包括1.0.11)中存在跨站请求伪造漏洞。这是由于save_setting()函数中缺少或验证不正确的nonce所致。这使得未认证的攻击者可以通过伪造请求来更新任意选项并实现权限提升,前提是他们能够诱使站点管理员执行诸如点击链接之类的操作。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
漏洞类别
跨站请求伪造(CSRF)
漏洞标题
Shopwarden – Automated WooCommerce monitoring & testing <= 1.0.11 - Cross-Site Request Forgery to Arbitrary Options Update
漏洞描述信息
The Shopwarden – Automated WooCommerce monitoring & testing plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.11. This is due to missing or incorrect nonce validation on the save_setting() function. This makes it possible for unauthenticated attackers to update arbitrary options and achieve privilege escalation via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
漏洞类别
跨站请求伪造(CSRF)