cleantalk
Vulnerabilities and Security Researches

WP Fastest Cache, 64812f58057b173a1f005ec44e9bb8f7c7e7f8f4

Application

WP Fastest Cache

Published on
May 23, 2016
Research Description
WP Fastest Cache &#8211; WordPress Cache Plugin [wp-fastest-cache] < 0.8.5.8 WP Fastest Cache <= 0.8.5.7 - Missing Authorization The WP Fastest Cache plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wpfc_save_cdn_integration_ajax_request_callback() function in versions up to, and including, 0.8.5.7. This makes it possible for unauthorized attackers to redirect all CSS file, image, video, etc. requests to a potentially malicious site.
Affected versions
max 0.8.5.8.
Status
vulnerable