Token of Trust Age Verification & Identity Verification
- <= 4.0.2
A vulnerability allowing unauthorized access has been identified in the Age Verification & Identity Verification by Token of Trust plugin for WordPress, affecting all versions up to and including 4.0.2. The issue arises because the handle_export_table() function is hooked to the WordPress 'init' action, which is triggered for all requests, including those from unauthenticated users, without any capability checks. This flaw enables unauthenticated attackers to download a CSV file containing sensitive WooCommerce donation data, such as order dates, order IDs, donation amounts, and admin-only order edit URLs. The data can be accessed by visiting any page on the site with the 'tot_export_table' GET parameter set to a numeric value between 0 and 3.
Exploitation of this vulnerability allows unauthenticated users to access and download sensitive WooCommerce donation data, including order details and admin-only edit URLs.
To reproduce this vulnerability, send a request to any page on a WordPress site with the Age Verification & Identity Verification by Token of Trust plugin installed, using a 'tot_export_table' GET parameter set to a numeric value between 0 and 3. The response will include a CSV file with sensitive WooCommerce donation data.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.