CVE-2024-8428: ForumWP – Forum & Discussion Board Plugin <= 2.0.2 - Insecure Direct Object Reference to Authenticated (Subscriber+) Privilege Escalation via Account Takeover
The ForumWP – Forum & Discussion Board Plugin plugin for WordPress is vulnerable to Privilege Escalation via Insecure Direct Object Reference in all versions up to, and including, 2.0.2 via the submitformhandler due to missing validation on the 'userid' user controlled key. This makes it possible for authenticated attackers, with subscriber-level access and above, to change the email address of administrative user accounts which can then be leveraged to reset the administrative users password and gain access to their account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8428?
CVE-2024-8428 has a medium severity rating due to its potential to allow unauthorized users to escalate privileges.
How do I fix CVE-2024-8428?
To fix CVE-2024-8428, upgrade the ForumWP – Forum & Discussion Board Plugin to version 2.0.3 or later.
What versions are affected by CVE-2024-8428?
CVE-2024-8428 affects all versions of the ForumWP plugin up to and including version 2.0.2.
What type of vulnerability is CVE-2024-8428?
CVE-2024-8428 is a Privilege Escalation vulnerability caused by Insecure Direct Object Reference.
Which component of the ForumWP plugin is vulnerable in CVE-2024-8428?
The vulnerability in CVE-2024-8428 exists in the submit_form_handler due to missing validation on the 'user_id' key.