Several plugins for WordPress by Inisev are vulnerable to unauthorized installation of plugins due to a missing capability check on the handle_installation function that is called via the inisev_installation AJAX aciton in various versions. This makes it possible for authenticated attackers with minimal permissions, such as subscribers, to install select plugins from Inisev on vulnerable sites. CVE-2023-38514 appears to be a duplicate of this vulnerability.
| Software | From | Fixed in |
|---|---|---|
| inisev / redirection | - | 1.1.4 |
| inisev / ssl_mixed_content_fix | - | 3.2.4 |
| inisev / rss_redirect_&_feedburner_alternative | - | 3.8 |
| mypopups / pop-up | - | 1.2.0 |
| copy-delete-posts / duplicate_post | - | 1.4.0 |
| backupbliss / clone | - | 2.3.8 |
| backupbliss / backup_migration | - | 1.2.8 |
| socialshare / social_share_icons_&_social_share_buttons | - | 3.5.8 |
| UltimatelySocial / social_media_share_buttons_&_social_sharing_icons | - | 2.8.2 |
| inisev / ultimate_posts_widget | - | 2.2.5 |
| inisev / enhanced_text_widget | - | 1.5.8 |