Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-99640
HistoryNov 10, 2021 - 12:00 a.m.

WordPress Pie Register plugin authorization issue vulnerability

2021-11-1000:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
wordpress
pie register
plugin
authorization
vulnerability
social login
unauthorized access

EPSS

0.187

Percentile

96.3%

WordPress is a set of blogging platforms developed by the Wordpress Foundation using the PHP language. The WordPress Pie Register plugin is vulnerable to an authorization issue in versions prior to 3.7.1.6. The vulnerability stems from a flaw in the social login implementation of the Pie Register plugin, which can be exploited by an unauthenticated attacker who knows their user ID or username to log in as any user on the site.

EPSS

0.187

Percentile

96.3%