What the vulnerability does
01Description
The Staff / Employee Business Directory for Active Directory plugin for WordPress is vulnerable to LDAP Passback in versions up to, and including, 1.2.3. This is due to insufficient validation when changing the LDAP server. This makes it possible for authenticated attackers, with administrative access and above, to change the LDAP server and retrieve the credentials for the original LDAP server.
Explanation of Vulnerability in Simple Terms
02Summary
Staff/Employee Business Directory for Active Directory versions up to 1.2.3 contain a missing authentication control that allows high-privilege users to access sensitive information. The vulnerability requires network access and high administrative privileges to exploit. Low confidentiality impact is possible, but integrity and availability are not affected.
What an attacker can do
03Attacker Capabilities
A high-privilege admin can read sensitive directory information over the network.
Potential impact on your site
04Site Impact
High-privilege admins could potentially view restricted employee directory data they shouldn't access.
Conditions required to exploit
05Prerequisites
Attacker must have high-level administrative privileges and network access to the application.
Key dates
06Disclosure timeline
September 26, 2023
CVE published
April 8, 2026
Record updated