WordPress Plugin Vulnerabilities

wpDiscuz < 7.3.4 - Arbitrary Comment Addition/Edition/Deletion via CSRF

Description

The plugin does check for CSRF when adding, editing and deleting comments, which could allow attacker to make logged in users such as admin edit and delete arbitrary comment, or the user who made the comment to edit it via a CSRF attack. Attackers could also make logged in users post arbitrary comment.

Other affected actions: wpdCloseThread (to close/open threads), wpdStickComment (to stick/unstick a comment)

Proof of Concept

Affects Plugins

Fixed in 7.3.4

References

YouTube Video

Classification

Miscellaneous

Original Researcher
Brandon Roldan
Submitter
Brandon Roldan
Submitter twitter
Verified
Yes

Timeline

Publicly Published
2021-10-11 (about 4 years ago)
Added
2021-10-11 (about 4 years ago)
Last Updated
2022-04-08 (about 3 years ago)

Other