WordPress Profile Builder Plugin Password Recovery Security Bypass Vulnerability
BID:67331
Info
WordPress Profile Builder Plugin Password Recovery Security Bypass Vulnerability
| Bugtraq ID: | 67331 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 08 2014 12:00AM |
| Updated: | May 08 2014 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
WordPress Profile Builder 1.1.59 |
| Not Vulnerable: |
WordPress Profile Builder 1.1.60 |
Discussion
WordPress Profile Builder Plugin Password Recovery Security Bypass Vulnerability
The Profile Builder plugin for WordPress is prone to a security-bypass vulnerability.
An attacker may exploit this issue to reset account passwords for arbitrary users which may aid in further attacks.
Versions prior to Profile Builder 1.1.60 are vulnerable.
The Profile Builder plugin for WordPress is prone to a security-bypass vulnerability.
An attacker may exploit this issue to reset account passwords for arbitrary users which may aid in further attacks.
Versions prior to Profile Builder 1.1.60 are vulnerable.
Exploit / POC
WordPress Profile Builder Plugin Password Recovery Security Bypass Vulnerability
Attackers can use a browser to exploit this issue.
Attackers can use a browser to exploit this issue.
Solution / Fix
WordPress Profile Builder Plugin Password Recovery Security Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
WordPress Profile Builder Plugin Password Recovery Security Bypass Vulnerability
References:
References:
- Profile Builder 1.1.60 ChangeLog (Wordpress)
- Profile Builder Homepage (WordPress)