Lucene search

K
wpexploitErwan LR (WPScan)WPEX-ID:1E13B9EA-A3EF-483B-B967-6EC14BD6D54D
HistoryFeb 28, 2023 - 12:00 a.m.

OAuth Single Sign On - SSO (OAuth Client) < 6.24.2 - IdP Discard via CSRF

2023-02-2800:00:00
Erwan LR (WPScan)
211
oauth
single sign on
sso
idp discard
csrf
exploit

EPSS

0.001

Percentile

33.2%

The plugin does not have CSRF checks when discarding Identify providers (IdP), which could allow attackers to make logged in admins delete all IdP via a CSRF attack

Make a logged in admin open: https://example.com/wp-admin/admin.php?page=mo_oauth_settings&tab=config&action=discard

EPSS

0.001

Percentile

33.2%

Related for WPEX-ID:1E13B9EA-A3EF-483B-B967-6EC14BD6D54D