PT-2025-9080 · WordPress · The Directorist

Wesley

·

Published

2025-02-28

·

Updated

2025-03-05

·

CVE-2025-1570

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions The Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings plugin for WordPress versions up to, and including, 8.1
Description The issue allows for privilege escalation via account takeover due to insufficient controls in the directorate generate password reset pin code() and reset user password() functions. This enables unauthenticated attackers to generate and brute force an OTP, allowing them to change any user's password, including an administrator's.
Recommendations For versions up to, and including, 8.1, update to a version that includes a fix for this issue to prevent privilege escalation via account takeover.

Fix

LPE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-1570

Affected Products

The Directorist