Lucene search

K
wpvulndbDmitrii IgnatyevWPVDB-ID:D923BA5B-1C20-40EE-AC69-CD0BB65B375A
HistoryJan 30, 2024 - 12:00 a.m.

Fatal Error Notify < 1.5.3 - Subscriber+ Test Error Email Sending

2024-01-3000:00:00
Dmitrii Ignatyev
wpscan.com
6
fatal error
authorization
csrf
ajax
exploitable
admin email
plugin

9.1 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Description The plugin does not have authorisation and CSRF checks in its test_error AJAX action, allowing any authenticated users, such as subscriber to call it and spam the admin email address with error messages. The issue is also exploitable via CSRF

PoC

As a subscriber, open https://example.com/wp-admin/admin-ajax.php?action=test_error The attack can also be performed via CSRF by making a logged in user open the link above

CPENameOperatorVersion
eq1.5.3

9.1 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.0%

Related for WPVDB-ID:D923BA5B-1C20-40EE-AC69-CD0BB65B375A