First published: Mon Jan 30 2023(Updated: )
The Custom User Profile Fields for User Registration WordPress plugin before 1.8.1 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Paidmembershipspro Custom User Profile Fields For User Registration | <1.8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the Custom User Profile Fields for User Registration WordPress plugin is CVE-2022-4831.
The severity of CVE-2022-4831 is medium with a CVSS score of 5.4.
The vulnerability allows users with a role as low as contributor to perform Stored Cross-Site Scripting (XSS) attacks.
An attacker can exploit CVE-2022-4831 by injecting malicious scripts into the page, which will be executed when the affected plugin outputs certain shortcode attributes.
To fix the vulnerability, update the Custom User Profile Fields for User Registration WordPress plugin to version 1.8.1 or later.