LiteSpeed Cache <= 6.5.1 - Unauthenticated Privilege Escalation

2024-10-29 00:00
TaiYou

Strategic Overview

Status
Patched in 6.5.2
Affected PluginLiteSpeed Cache
Affected Version<= 6.5.1
CVSS8.1High
CVECVE-2024-50550
View all LiteSpeed Cache vulnerabilities

Vulnerability Overview

The LiteSpeed Cache plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 6.5.1. This is due to the is_role_simulation() function not properly providing protection against unauthorized use of the function. This makes it possible for unauthenticated attackers to simulate roles such as administrators which provides elevated access to the site. Please note there are a lot of pre-requisites for this to be exploitable.

Technical Analysis

REMEDIATION: Update to version 6.5.2, or a newer patched version --- IDENTIFIER: CWE-266 (Incorrect Privilege Assignment) A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C