Build App Online <= 1.0.22 - Account Takeover via Weak Password Reset Mechanism

2023-12-27 00:00
Ram

Strategic Overview

Status
Patched in 1.0.23
Affected PluginBuild App Online
Affected Version<= 1.0.22
CVSS8.1High
CVECVE-2023-7264
View all Build App Online vulnerabilities

Vulnerability Overview

The Build App Online plugin for WordPress is vulnerable to account takeover due to a weak password reset mechanism in all versions up to, and including, 1.0.22. This makes it possible for unauthenticated attackers to reset the password of arbitrary users by guessing an 4-digit numeric reset code.

Technical Analysis

REMEDIATION: Update to version 1.0.23, or a newer patched version --- IDENTIFIER: CWE-640 (Weak Password Recovery Mechanism for Forgotten Password) The product contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C