Missing Authorization vulnerability in ShareThis Dashboard for Google Analytics
CVE-2022-45851

5.4MEDIUM

Key Information:

Vendor
WordPress
Vendor
CVE Published:
25 March 2024

Summary

The missing authorization vulnerability in the ShareThis Dashboard for Google Analytics arises from improper access control mechanisms implemented within the application. This issue permits unauthorized users to gain access to sensitive functionalities or data, potentially compromising user privacy and data integrity. Affected versions allow for exploitation, which can lead to serious implications for data security and user trust.

Affected Version(s)

ShareThis Dashboard for Google Analytics <= 3.1.4

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Dave Jong (Patchstack)
.