PT-2023-11855 · WordPress · Mstore Api
Jerome Bruandet
·
Published
2023-06-07
·
Updated
2023-06-12
·
CVE-2020-36713
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
MStore API plugin for WordPress versions up to and including 2.1.5
Description
The issue allows for authentication bypass due to unrestricted access to the 'register' and 'update user profile' routes, enabling unauthenticated attackers to create new administrator accounts, delete existing administrator accounts, or escalate privileges on any account.
Recommendations
For versions up to and including 2.1.5, update to a version higher than 2.1.5 to resolve the issue. As a temporary workaround, consider restricting access to the 'register' and 'update user profile' routes to prevent unauthorized account modifications.
Exploit
Fix
Authentication Bypass Using an Alternate Path or Channel
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mstore Api