PT-2024-38888 · WordPress · The Post Form – Registration Form – Profile Form For User Profiles – Frontend Content Forms For User Submissions
Wesley
·
Published
2024-09-13
·
Updated
2024-09-26
·
CVE-2024-8246
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) plugin for WordPress versions up to, and including, 2.8.11
Description:
The vulnerability is due to the plugin not properly restricting what users have access to set the default role on registration forms. This makes it possible for authenticated attackers, with contributor-level access and above, to create a registration form with a custom role that allows them to register as administrators.
Recommendations:
For versions up to, and including, 2.8.11, update to a version that fixes this issue. As a temporary workaround, consider restricting access to the registration form creation feature to prevent authenticated attackers from creating custom roles. Additionally, restrict the ability to set default roles on registration forms to only trusted users.
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
The Post Form – Registration Form – Profile Form For User Profiles – Frontend Content Forms For User Submissions