The PeproDev Ultimate Profile Solutions plugin for WordPress is vulnerable to Authentication Bypass in versions 1.9.1 to 7.5.2. This is due to handel_ajax_req() function not having proper restrictions on the change_user_meta functionality that makes it possible to set a OTP code and subsequently log in with that OTP code. This makes it possible for unauthenticated attackers to login as other users on the site, including administrators.
Metrics
Affected Vendors & Products
References
History
Wed, 07 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 07 May 2025 02:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The PeproDev Ultimate Profile Solutions plugin for WordPress is vulnerable to Authentication Bypass in versions 1.9.1 to 7.5.2. This is due to handel_ajax_req() function not having proper restrictions on the change_user_meta functionality that makes it possible to set a OTP code and subsequently log in with that OTP code. This makes it possible for unauthenticated attackers to login as other users on the site, including administrators. | |
Title | PeproDev Ultimate Profile Solutions 1.9.1 - 7.5.2 - Authentication Bypass to Account Takeover | |
Weaknesses | CWE-288 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Wordfence
Published: 2025-05-07T01:43:07.411Z
Updated: 2025-05-07T14:03:23.728Z
Reserved: 2025-04-21T13:25:02.887Z
Link: CVE-2025-3844

Updated: 2025-05-07T13:47:54.400Z

Status : Awaiting Analysis
Published: 2025-05-07T03:15:17.650
Modified: 2025-05-07T14:13:20.483
Link: CVE-2025-3844

No data.