Missing Authorization vulnerability in ShareThis Dashboard for Google Analytics
CVE-2022-45851
5.4MEDIUM
Key Information:
- Vendor
- WordPress
- Vendor
- CVE Published:
- 25 March 2024
Summary
The missing authorization vulnerability in the ShareThis Dashboard for Google Analytics arises from improper access control mechanisms implemented within the application. This issue permits unauthorized users to gain access to sensitive functionalities or data, potentially compromising user privacy and data integrity. Affected versions allow for exploitation, which can lead to serious implications for data security and user trust.
Affected Version(s)
ShareThis Dashboard for Google Analytics <= 3.1.4
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Dave Jong (Patchstack)