ProfilePress 3.0 - 3.1.3 - Unauthenticated Privilege Escalation
2021-06-28 19:45
Chloe ChamberlandStrategic Overview
StatusPatched in 3.1.4
Affected PluginPaid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress
Affected Version
3.0.0 – 3.1.3CVSS9.8Critical
CVE
CVE-2021-34622Vulnerability Overview
A vulnerability in the user profile update component found in the ~/src/Classes/EditUserProfile.php file of the ProfilePress WordPress plugin made it possible for users to escalate their privileges to that of an administrator while editing their profile. This issue affects versions 3.0.0 - 3.1.3. .
Technical Analysis
REMEDIATION: Update to version 3.1.4, or a newer patched version --- IDENTIFIER: CWE-269 (Improper Privilege Management) The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C