CVE-2022-45809

Thumbs Rating <= 5.0.0 - Race Condition

2023-04-28 00:00
thiennv

Strategic Overview

Status
Unpatched
Affected Plugin
Thumbs Rating
Affected Version
<= 5.0.0
CVSS
5.3Medium
Weakness type
CWE-362 · Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE
CVE-2022-45809
View all Thumbs Rating vulnerabilities

At a glance

CVE-2022-45809 is a medium-severity Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in the Thumbs Rating WordPress plugin, affecting versions <= 5.0.0. It carries a CVSS score of 5.3 (reachable over the network; low attack complexity). Exploitation requires no authentication. No fixed release has been reported yet; treat installations running this software as exposed. Disclosed April 2023, reported by thiennv.

Vulnerability Overview

The Thumbs Rating plugin for WordPress is vulnerable to a race condition in versions up to, and including, 5.0.0. This is due to insufficient controls on resources being executed concurrently. The impact of this vulnerability is unknown, however, it may be possible to lose integrity of a post's votes if too many requests are made concurrently.

Technical Analysis

The vector marks this flaw as remotely reachable over the network, with low attack complexity — no special timing or configuration is needed, and no privileges on the target site, and no interaction from a victim user.

CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

Remediation

No known patch available. Please review the vulnerability's details in depth and employ mitigations based on your organization's risk tolerance. It may be best to uninstall the affected software and find a replacement.

How does WordSec protect against this?

No patched version is recorded yet, so there is nothing to update to; WordSec's vulnerability alerts flag this record the moment that changes.

  • Alerts

External References

Related records

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C