CVE-2023-0940: ProfileGrid < 5.3.1 - Subscriber+ Arbitrary Password Reset
The ProfileGrid WordPress plugin before 5.3.1 provides an AJAX endpoint for resetting a user password but does not implement proper authorization. This allows a user with low privileges, such as subscriber, to change the password of any account, including Administrator ones.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-0940?
CVE-2023-0940 is a vulnerability in the ProfileGrid WordPress plugin before version 5.3.1 that allows low-privileged users to change the password of any account, including Administrator ones.
How severe is CVE-2023-0940?
CVE-2023-0940 has a severity rating of 8.8 out of 10, indicating a high severity.
Which software versions are affected by CVE-2023-0940?
The ProfileGrid WordPress plugin versions up to and excluding 5.3.1 are affected by CVE-2023-0940.
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-0940?
CVE-2023-0940 is associated with CWE-863, which is the category for improper authorization.
Is there any reference for CVE-2023-0940?
Yes, you can find more information about CVE-2023-0940 at the following reference: https://wpscan.com/vulnerability/56744f72-2d48-4f42-8195-24b4dd951bb5