What the vulnerability does
01Description
The Ultimate Membership Pro plugin for WordPress is vulnerable to Authentication Bypass in versions between, and including, 7.3 to 8.6. This makes it possible for unauthenticated attackers to login as any user, including the site administrator with a default user ID of 1, via the username or user ID.
Explanation of Vulnerability in Simple Terms
02Summary
Indeed Membership Pro versions 7.3 through 8.6.0 contain an authentication bypass vulnerability. An attacker can gain unauthorized access to the plugin without valid credentials. The flaw stems from improper authentication checks in the plugin's core logic. Sites running affected versions should update immediately to 8.6.1 or later.
What an attacker can do
03Attacker Capabilities
Gain unauthorized access to the plugin and perform actions as an authenticated user without providing valid credentials.
Potential impact on your site
04Site Impact
Attackers can access membership features, user data, and plugin functionality without logging in, compromising site security and user privacy.
Conditions required to exploit
05Prerequisites
Network access only; no authentication, user interaction, or special configuration required.
Key dates
06Disclosure timeline
October 16, 2024
CVE published
October 16, 2024
Record updated