cleantalk
Vulnerabilities and Security Researches

Directory Listings WordPress plugin – uListing, 930f8acdda1cd7d8d9092b3c14a1ea3f1f1dc946

Published on
Jan 28, 2021
Research Description
Directory Listings WordPress plugin &#8211; uListing [ulisting] < 1.7 uListing <= 1.6.6 - Unauthenticated Information Disclosure The uListing plugin for WordPress is vulnerable to authorization bypass due to a missing capability check in the "ulisting/includes/route.php" file on the /1/api/ulisting-user/search REST-API route in versions up to, and including, 1.6.6. This makes it possible for unauthenticated attackers to retrieve the list of all users and their email address in the database.
Affected versions
max 1.7.
Status
vulnerable