Build App Online <= 1.0.22 - Account Takeover via Weak Password Reset Mechanism
2023-12-27 00:00
RamStrategic Overview
StatusPatched in 1.0.23
Affected PluginBuild App Online
Affected Version
<= 1.0.22CVSS8.1High
CVE
CVE-2023-7264Vulnerability Overview
The Build App Online plugin for WordPress is vulnerable to account takeover due to a weak password reset mechanism in all versions up to, and including, 1.0.22. This makes it possible for unauthenticated attackers to reset the password of arbitrary users by guessing an 4-digit numeric reset code.
Technical Analysis
REMEDIATION: Update to version 1.0.23, or a newer patched version --- IDENTIFIER: CWE-640 (Weak Password Recovery Mechanism for Forgotten Password) The product contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C