Description
WordPress Plugin ThinkTwit is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently write to the images folder. WordPress Plugin ThinkTwit version 1.5.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.5.2 or latest
References
Related Vulnerabilities
MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-40601)
WordPress 3.8.x Same Origin Method Execution (SOME) Vulnerability (3.8 - 3.8.13)
Oracle Application Server Other Vulnerability (CVE-2002-0656)
WordPress Plugin IP Geo Block Security Bypass (2.2.2)
WordPress Plugin Analyticator Multiple Cross-Site Scripting Vulnerabilities (6.4.9.5)