Description
The Analytics Insights for Google Analytics 4 (AIWP) WordPress plugin before 6.3 is vulnerable to Open Redirect due to insufficient validation on the redirect oauth2callback.php file. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 26 Mar 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 09 Oct 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Deconf
Deconf analytics Insights |
|
| Weaknesses | CWE-601 | |
| CPEs | cpe:2.3:a:deconf:analytics_insights:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Deconf
Deconf analytics Insights |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-03-26T21:09:20.335Z
Reserved: 2024-01-05T14:49:48.529Z
Link: CVE-2024-0250
Updated: 2024-08-01T17:41:16.271Z
Status : Modified
Published: 2024-02-12T16:15:08.500
Modified: 2025-03-26T21:15:20.870
Link: CVE-2024-0250
No data.
OpenCVE Enrichment
No data.
Weaknesses