Tilda Publishing <= 0.3.23 - Missing Authorization

2023-09-04 00:00
spacecroupier

Strategic Overview

Status
Patched in 0.3.24
Affected PluginTilda-publishing
Affected Version<= 0.3.23
CVSS5.4Medium
CVECVE-2023-31234
View all Tilda-publishing vulnerabilities

Vulnerability Overview

The Tilda Publishing plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to missing capability checks on several functions hooked via AJAX actions such as 'ajax_export_file,' 'ajax_sync,' 'ajax_get_keys,' 'ajax_switcher_status,' and more in versions up to, and including, 0.3.23. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform a wide variety of actions like exporting data, modifying keys, and more.

Technical Analysis

REMEDIATION: Update to version 0.3.24, or a newer patched version --- IDENTIFIER: CWE-862 (Missing Authorization) The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C