The WP Statistics plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 14.16.4. This is due to missing capability checks on multiple AJAX handlers including `wp_statistics_get_filters`, `wp_statistics_getPrivacyStatus`, `wp_statistics_updatePrivacyStatus`, and `wp_statistics_dismiss_notices`. These endpoints only verify a `wp_rest` nonce via `check_ajax_referer()` but do not enforce any capability checks such as `current_user_can()` or the plugin's own `User::Access()` method. Since the `wp_rest` nonce is available to all authenticated WordPress users, this makes it possible for authenticated attackers, with Subscriber-level access and above, to access sensitive analytics data (user IDs, usernames, emails, visitor tracking data), retrieve and modify privacy audit compliance status, and dismiss administrative notices.
WP Statistics plugin versions up to 14.16.4 lack authorization checks on multiple AJAX handlers, allowing authenticated users with Subscriber-level access to access sensitive analytics data and modify privacy settings. The vulnerability affects WordPress sites using this popular statistics plugin and requires only a valid WordPress account to exploit.
يفتقد مكون WP Statistics للإصدارات حتى 14.16.4 إلى فحوصات التفويض على معالجات AJAX متعددة بما في ذلك wp_statistics_get_filters و wp_statistics_getPrivacyStatus و wp_statistics_updatePrivacyStatus و wp_statistics_dismiss_notices. يمكن للمستخدمين المصرح لهم على مستوى المشترك والأعلى الوصول إلى بيانات التحليلات الحساسة وتعديل حالة الامتثال للخصوصية.
WP Statistics plugin versions up to 14.16.4 lack authorization checks on multiple AJAX handlers, allowing authenticated users with Subscriber-level access to access sensitive analytics data and modify privacy settings. The vulnerability affects WordPress sites using this popular statistics plugin and requires only a valid WordPress account to exploit.
Update WP Statistics plugin to version 14.16.5 or later immediately. Implement capability checks on all AJAX handlers and enforce proper authorization using current_user_can() or equivalent methods. Review access logs for unauthorized access to analytics endpoints. Consider restricting plugin access to administrator roles only until patched.
قم بتحديث مكون WP Statistics إلى الإصدار 14.16.5 أو أحدث فوراً. طبق فحوصات الصلاحيات على جميع معالجات AJAX وفرض التفويض المناسب باستخدام current_user_can() أو طرق معادلة. راجع سجلات الوصول للكشف عن الوصول غير المصرح به لنقاط نهاية التحليلات. فكر في تقييد وصول المكون لأدوار المسؤول فقط حتى يتم إصلاحه.