Unauthorized Password Reset in Profile Builder Plugin for WordPress
CVE-2023-2297

8.1HIGH

Key Information:

Vendor
Wordpress
Vendor
CVE Published:
27 April 2023

Summary

The Profile Builder – User Profile & User Registration Forms plugin for WordPress suffers from a vulnerability that allows unauthorized users to reset passwords due to insufficient validation in the password reset functionality. The issue arises from the use of an unencrypted password reset key, which can be easily exploited. Attackers may leverage this flaw in conjunction with other vulnerabilities, such as SQL injection in related plugins or themes, to gain access to user accounts without authorization. It is crucial for site administrators to update to the patched version to safeguard against potential account takeovers.

Affected Version(s)

Profile Builder – User Profile & User Registration Forms * <= 3.9.0

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Lana Codes
.