8.1

CVE-2022-1903

Exploit

ARMember < 3.4.8 - Unauthenticated Admin Account Takeover

ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup <= 3.4.7 -Authentication Bypass via Password Reset Weakness

The ARMember WordPress plugin before 3.4.8 is vulnerable to account takeover (even the administrator) due to missing nonce and authorization checks in an AJAX action available to unauthenticated users, allowing them to change the password of arbitrary users by knowing their username
Mögliche Gegenmaßnahme
ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup: Update to version 3.4.8, or a newer patched version
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ArmemberpluginArmember SwPlatformwordpress Version < 3.4.8
Weitere Schwachstelleninformationen
SystemWordPress Plugin
Produkt ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup
Version *-3.4.7
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 8.52% 0.943
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.1 2.2 5.9
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
CWE-862 Missing Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

https://wpscan.com/vulnerability/28d26aa6-a8db-4c20-9ec7-39821c606a08
Third Party Advisory
Exploit
https://www.wordfence.com/threat-intel/vulnerabilities/id/9831ebf6-a6a6-4495-8cda-969c7d7d3a6c
Third Party Advisory