CVE-2025-3844: PeproDev Ultimate Profile Solutions 1.9.1 - 7.5.2 - Authentication Bypass to Account Takeover
The PeproDev Ultimate Profile Solutions plugin for WordPress is vulnerable to Authentication Bypass in versions 1.9.1 to 7.5.2. This is due to handelajaxreq() function not having proper restrictions on the changeusermeta functionality that makes it possible to set a OTP code and subsequently log in with that OTP code. This makes it possible for unauthenticated attackers to login as other users on the site, including administrators.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3844?
CVE-2025-3844 is classified as a high severity vulnerability due to its potential for unauthorized access through authentication bypass.
How do I fix CVE-2025-3844?
To fix CVE-2025-3844, update the PeproDev Ultimate Profile Solutions plugin to a version later than 7.5.2.
What versions of PeproDev Ultimate Profile Solutions are affected by CVE-2025-3844?
CVE-2025-3844 affects PeproDev Ultimate Profile Solutions versions from 1.9.1 to 7.5.2.
What is the cause of CVE-2025-3844?
CVE-2025-3844 is caused by inadequate restrictions in the handel_ajax_req() function on modifying user meta data.
How can CVE-2025-3844 be exploited?
CVE-2025-3844 can be exploited by attackers to set an OTP code for a user without proper authentication, leading to unauthorized actions.