THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to, and including 2.10.0, due to a missing capability check on the wp_ajax_nopriv_wcfm_ajax_controller AJAX action that controls membership settings. This makes it possible for unauthenticated attackers to modify the membership registration form in a way that allows them to set the role for registration to that of any user including administrators. Once configured, the attacker can then register as an administrator.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 13 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2025-01-13T16:54:42.803Z
Reserved: 2023-04-05T17:51:27.882Z
Link: CVE-2022-4939
Updated: 2024-08-03T01:55:46.096Z
Status : Modified
Published: 2023-04-05T19:15:07.453
Modified: 2024-11-21T07:36:17.580
Link: CVE-2022-4939
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.