Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r426-78f6-7rqw

Опубликовано: 03 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

The Job Listings plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the register_action() function in versions 0.1 to 0.1.1. The plugin’s registration handler reads the client-supplied $_POST['user_role'] and passes it directly to wp_insert_user() without restricting to a safe set of roles. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.

The Job Listings plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the register_action() function in versions 0.1 to 0.1.1. The plugin’s registration handler reads the client-supplied $_POST['user_role'] and passes it directly to wp_insert_user() without restricting to a safe set of roles. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.

EPSS

Процентиль: 43%
0.00205
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-285

Связанные уязвимости

CVSS3: 9.8
nvd
9 месяцев назад

The Job Listings plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the register_action() function in versions 0.1 to 0.1.1. The plugin’s registration handler reads the client-supplied $_POST['user_role'] and passes it directly to wp_insert_user() without restricting to a safe set of roles. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.

EPSS

Процентиль: 43%
0.00205
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-285