Lucene search

K
wpexploitChloe ChamberlandWPEX-ID:078E93CD-7CF2-4E23-8171-58D44E354D62
HistoryApr 26, 2021 - 12:00 a.m.

Store Locator Plus <= 5.5.14 - Authenticated Privilege Escalation

2021-04-2600:00:00
Chloe Chamberland
77
store locator plus
privilege escalation
authenticated
poc
remediation

EPSS

0.001

Percentile

46.9%

There is functionality in the plugin that made it possible for authenticated users to update their user meta data to become an administrator on any site using the plugin. **Partially unpatched because they added CSRF protection that technically blocks low-level users from using the endpoint, however, no capability check was added.

The PoC will be displayed once the issue has been remediated

EPSS

0.001

Percentile

46.9%

Related for WPEX-ID:078E93CD-7CF2-4E23-8171-58D44E354D62