The Maps Plugin using Google Maps for WordPress plugin before 1.8.1 does not have proper authorisation and CSRF in most of its AJAX actions, which could allow any authenticated users, such as subscriber to delete arbitrary posts and update the plugin's settings.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Link | Tags |
---|---|
https://wpscan.com/vulnerability/6639da0d-6d29-46c1-a3cc-5e5626305833 | third party advisory exploit |
https://plugins.trac.wordpress.org/changeset/2641450 | third party advisory release notes |