cleantalk
Vulnerabilities and Security Researches

User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor, CVE-2024-6695

CVE, Research URL

CVE-2024-6695

Published on
Jul 31, 2024
Research Description
it's possible for an attacker to gain administrative access without having any kind of account on the targeted site and perform unauthorized actions. This is due to improper logic flow on the user registration process.
Affected versions
Min -, max 3.11.9.
Status
vulnerable