WP Database Reset <= 3.1 - Privilege Escalation

2020-01-16 00:00
Chloe Chamberland

Strategic Overview

Status
Patched in 3.15
Affected PluginDatabase Reset
Affected Version<= 3.1
CVSS9.9Critical
CVECVE-2020-7047
View all Database Reset vulnerabilities

Vulnerability Overview

The WordPress plugin, WP Database Reset through 3.1, contains a flaw that gave any authenticated user, with minimal permissions, the ability (with a simple wp-admin/admin.php?db-reset-tables[]=users request) to escalate their privileges to administrator while dropping all other users from the table.

Technical Analysis

REMEDIATION: Update to version 3.15, or a newer patched version --- IDENTIFIER: CWE-269 (Improper Privilege Management) The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

External References

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C