plugin

Google Analytics Mu Vulnerabilities

1 known security issue reported for the Google Analytics Mu WordPress plugin. Most recent disclosed Mar 3, 2014.

1 high

Running Google Analytics Mu on your site? Check whether your installed version is affected.

Scan your site free

Google Analytics MU < 2.4 - Cross-Site Request Forgery

high

The Google Analytics MU plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions before 2.4. This is due to missing or incorrect nonce validation on the UAID function. This makes it possible for unauthenticated attackers to arbitrarily manipulate settings via a forged request granted they can trick...

CVSS:
8.8
Affected:
up to 2.3.1
Fixed in:
2.4
Disclosed:
Mar 3, 2014

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database