First published: Mon Aug 09 2021(Updated: )
The User Registration, User Profile, Login & Membership – ProfilePress (Formerly WP User Avatar) WordPress plugin before 3.1.11's widget for tabbed login/register was not properly escaped and could be used in an XSS attack which could lead to wp-admin access. Further, the plugin in several places assigned $_POST as $_GET which meant that in some cases this could be replicated with just $_GET parameters and no need for $_POST values.
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Properfraction Profilepress | <3.1.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-24522 is a vulnerability in the User Registration, User Profile, Login & Membership – ProfilePress WordPress plugin before 3.1.11's widget for tabbed login/register.
CVE-2021-24522 can be exploited through an XSS attack which could lead to wp-admin access.
The severity of CVE-2021-24522 is medium with a CVSS score of 6.1.
The User Registration, User Profile, Login & Membership – ProfilePress WordPress plugin versions up to and excluding 3.1.11 are affected by CVE-2021-24522.
To fix CVE-2021-24522, it is recommended to update the User Registration, User Profile, Login & Membership – ProfilePress WordPress plugin to version 3.1.11 or higher.