WordPress Plugin Vulnerabilities

RW Divi Unite Gallery <= 1.0 - Security Bypass via Outdated Freemius

Description

The plugin is vulnerable to a security bypass due to the use of a known vulnerable component, Freemius < 2.2.4. The plugin uses Freemius 1.0.0 and is therefore vulnerable. The core issue that causes the vulnerability is in the _set_db_option function, which is exposed to any authenticated user with no authorization checks, allowing for WordPress site settings to be manipulated and administrative access to the site to be gained. The Freemius issue was originally disclosed in February of 2019, see references.

Proof of Concept

Affects Plugins

References

Classification

Miscellaneous

Submitter
0xdecafbad
Submitter website
Verified
Yes

Timeline

Publicly Published
2022-02-22 (about 4 years ago)
Added
2022-02-22 (about 4 years ago)
Last Updated
2022-04-17 (about 3 years ago)

Other