PT-2025-44719 · WordPress · Service Finder Bookings
Thái An
·
Published
2025-11-01
·
Updated
2025-11-01
·
CVE-2025-6574
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Service Finder Bookings plugin for WordPress versions prior to 6.1
Description
The Service Finder Bookings plugin for WordPress is susceptible to privilege escalation, potentially leading to account takeover. This occurs because the plugin does not adequately verify a user’s identity before allowing updates to user details, such as their email address. Authenticated attackers with subscriber-level access or higher can modify the email addresses of any user, including administrators. This allows attackers to initiate password resets and gain unauthorized access to accounts.
Recommendations
Versions prior to 6.1 should be updated to version 6.1 or later to address this issue.
Fix
LPE
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Service Finder Bookings