CVE-2023-4239: Real Estate Manager <= 7.2 - Arbitrary Usermeta Update to Authenticated (Subscriber+) Privilege Escalation
The Real Estate Manager plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 6.7.1 due to insufficient restriction on the 'remsaveprofilefront' function. This makes it possible for authenticated attackers, with minimal permissions such as a subscriber, to modify their user role by supplying the 'wpcapabilities' parameter during a profile update.
Other sources
The Real Estate Manager plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 7.2 due to insufficient restriction on the 'remsaveprofilefront' function. This makes it possible for authenticated attackers, with minimal permissions such as a subscriber, to modify their user role by supplying the 'wpcapabilities' parameter during a profile update.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-4239?
CVE-2023-4239 is classified as a medium severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2023-4239?
To fix CVE-2023-4239, update the Real Estate Manager plugin to version 6.7.2 or later immediately.
What versions of Real Estate Manager are affected by CVE-2023-4239?
CVE-2023-4239 affects the Real Estate Manager plugin for versions up to and including 6.7.1.
What type of attacks can exploit CVE-2023-4239?
Authenticated attackers with minimal permissions could exploit CVE-2023-4239 for privilege escalation.
Who is at risk due to CVE-2023-4239?
Users of the Real Estate Manager plugin for WordPress running versions up to 6.7.1 are at risk of being attacked through CVE-2023-4239.