CVE-2020-36832 CRITICAL

CVE-2020-36832: Indeed Membership Pro 7.3 - 8.6 - Authentication Bypass

Vendor Wpindeed
Product Indeed Membership Pro
Weakness CWE-287 · Improper authentication
Published October 16, 2024
Last update October 16, 2024

CVSS base score

9.8/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

What the vulnerability does

01Description

The Ultimate Membership Pro plugin for WordPress is vulnerable to Authentication Bypass in versions between, and including, 7.3 to 8.6. This makes it possible for unauthenticated attackers to login as any user, including the site administrator with a default user ID of 1, via the username or user ID.

Explanation of Vulnerability in Simple Terms

02Summary

Indeed Membership Pro versions 7.3 through 8.6.0 contain an authentication bypass vulnerability. An attacker can gain unauthorized access to the plugin without valid credentials. The flaw stems from improper authentication checks in the plugin's core logic. Sites running affected versions should update immediately to 8.6.1 or later.

What an attacker can do

03Attacker Capabilities

Gain unauthorized access to the plugin and perform actions as an authenticated user without providing valid credentials.

Potential impact on your site

04Site Impact

Attackers can access membership features, user data, and plugin functionality without logging in, compromising site security and user privacy.

Conditions required to exploit

05Prerequisites

Network access only; no authentication, user interaction, or special configuration required.

Key dates

06Disclosure timeline

October 16, 2024 CVE published
October 16, 2024 Record updated

Related vulnerabilities

08Related CVE