Password only login

Explore Password only login vulnerabilities across all versions. Currently tracking 1 known vulnerabilities, including severity, impact, and patch status.

Strategic Overview

Avg CVSSMedium
6.1/ 10
Patch Coverage0%
Open

1

Fixed

0

Get automatic notifications for all Password only login vulnerabilities before they are exploited.

Vulnerability Records

1 records
Plugin Profile
Latestv0.2

Password only login

Calvaweb

Author

Calvaweb

5.0(1)
100/100
Last Updated
2014-01-03 (13y ago)
Active Installs
50+
Downloads
3,206
Requires WP
3.3+
Requires PHP
0+
Tested up to
WP 3.7.41
Created
2013-05-11 (13y ago)

Select one or more user accounts that can login to the site using just their password via a custom login form supplied with the plugin. For security purposes, only user accounts with subscriber role can be selected and any accounts selected will be prevented from accessing the wordpress backend. The custom login/logout form is added to a template file using a PHP function ‘pol_showform()’. Like with the standard login form, if you pass ‘redirect_to’ on the querystring, it will use this as the url to redirect to after the login/logout. Arbitrary section 1

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C