All In One WP Security 5.1.9 - Plaintext Storage of Credentials

2023-07-11 00:00
Anonymous

Strategic Overview

Status
Patched in 5.2.0
Affected Version
5.1.9
CVSS
5.9Medium
Weakness type
CWE-256 · Plaintext Storage of a Password
CVE
CVE pending
View all All-In-One Security (AIOS) – Security and Firewall vulnerabilities

At a glance

This record tracks a medium-severity Plaintext Storage of a Password vulnerability in the All-In-One Security (AIOS) WordPress plugin, affecting versions 5.1.9. It carries a CVSS score of 5.9 (reachable over the network; high confidentiality impact). Exploitation requires no authentication. The issue is fixed in version 5.2.0; sites on affected versions should update now. Disclosed July 2023.

Vulnerability Overview

The All In One WP Security plugin for WordPress is vulnerable to sensitive information disclosure in version 5.1.9. This is due to insufficient encryption on credentials stored in database logs. This makes it possible for attackers to retrieve the username and password of users that have logged into the site, granted they obtain access to the database which would require successfully exploiting another vulnerability such as SQL injection or use of weak passwords.

Technical Analysis

The vector marks this flaw as remotely reachable over the network, and no privileges on the target site, and no interaction from a victim user. A successful exploit has high impact on confidentiality.

CWE-256: Plaintext Storage of a Password

The product stores a password in plaintext within resources such as memory or files.

Remediation

Update to version 5.2.0, or a newer patched version

How does WordSec protect against this?

The fix is the thing that ends this: All-In-One Security (AIOS) 5.2.0 closes this, and updating the plugin is the step that ends it.

  • Alerts

External References

Related records

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C