tagDiv Cloud Library < 2.7 - Missing Authorization to Arbitrary User Metadata Update

2023-06-19 00:00
Truoc Phan

Strategic Overview

Status
Patched in 12.4
Affected Version<= 12.3
CVSS9.8Critical
CVECVE-2023-1597
View all Newspaper - News & WooCommerce WordPress Theme vulnerabilities

Vulnerability Overview

The tagDiv Cloud Library plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the tdb_user_form_on_submit() function called via an AJAX action in versions prior to 2.7. This makes it possible for unauthenticated attackers to modify arbitrary user metadata and gain elevated privileges.

Technical Analysis

REMEDIATION: Update to version 12.4, or a newer patched version --- IDENTIFIER: CWE-862 (Missing Authorization) The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C