WordPress Plugin Vulnerabilities
RW Divi Unite Gallery <= 1.0 - Security Bypass via Outdated Freemius
Description
The plugin is vulnerable to a security bypass due to the use of a known vulnerable component, Freemius < 2.2.4. The plugin uses Freemius 1.0.0 and is therefore vulnerable. The core issue that causes the vulnerability is in the _set_db_option function, which is exposed to any authenticated user with no authorization checks, allowing for WordPress site settings to be manipulated and administrative access to the site to be gained. The Freemius issue was originally disclosed in February of 2019, see references.
Proof of Concept
Affects Plugins
References
Classification
Type
AUTHBYPASS
OWASP top 10
CWE
CVSS
Miscellaneous
Submitter
0xdecafbad
Submitter website
Verified
Yes
WPVDB ID
Timeline
Publicly Published
2022-02-22 (about 4 years ago)
Added
2022-02-22 (about 4 years ago)
Last Updated
2022-04-17 (about 3 years ago)