← Voltar para CVEs
CVE-2021-24649
CRITICAL9.8
Descricao
The WP User Frontend WordPress plugin before 3.5.29 uses a user supplied argument called urhidden in its registration form, which contains the role for the account to be created with, encrypted via wpuf_encryption(). This could allow an attacker having access to the AUTH_KEY and AUTH_SALT constant (via an arbitrary file access issue for example, or if the blog is using the default keys) to create an account with any role they want, such as admin
Detalhes CVE
Pontuacao CVSS v3.19.8
SeveridadeCRITICAL
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosNONE
Interacao do usuarioNONE
Publicado11/21/2022
Ultima modificacao4/30/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
wedevs:wp_user_frontend
Referencias
https://wpscan.com/vulnerability/9486744e-ab24-44e4-b06e-9e0b4be132e2(contact@wpscan.com)
https://wpscan.com/vulnerability/9486744e-ab24-44e4-b06e-9e0b4be132e2(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.