WP Fastest Cache, 64812f58057b173a1f005ec44e9bb8f7c7e7f8f4
- CVE, Research URL
- Home page URL
- Application
- Published on
- May 23, 2016
- Research Description
- WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 0.8.5.8 WP Fastest Cache <= 0.8.5.7 - Missing Authorization The WP Fastest Cache plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wpfc_save_cdn_integration_ajax_request_callback() function in versions up to, and including, 0.8.5.7. This makes it possible for unauthorized attackers to redirect all CSS file, image, video, etc. requests to a potentially malicious site.
- Affected versions
-
max 0.8.5.8.
- Status
-
vulnerable