CVE-2024-10508

The RegistrationMagic – User Registration Plugin with Custom Registration Forms plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 6.0.2.6. This is due to the plugin not properly validating the password reset token prior to updating a user's password. This makes it possible for unauthenticated attackers to reset the password of arbitrary users, including administrators, and gain access to these accounts.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:metagauss:registrationmagic:*:*:*:*:*:wordpress:*:*

History

29 Jan 2025, 19:29

Type Values Removed Values Added
CPE cpe:2.3:a:metagauss:registrationmagic:*:*:*:*:*:wordpress:*:*
References () https://plugins.trac.wordpress.org/changeset/3181174/custom-registration-form-builder-with-submission-manager/trunk/public/controllers/class_rm_login_controller.php - () https://plugins.trac.wordpress.org/changeset/3181174/custom-registration-form-builder-with-submission-manager/trunk/public/controllers/class_rm_login_controller.php - Patch
References () https://www.wordfence.com/threat-intel/vulnerabilities/id/c4679fa7-be6b-4f50-8cdf-ff9822794f19?source=cve - () https://www.wordfence.com/threat-intel/vulnerabilities/id/c4679fa7-be6b-4f50-8cdf-ff9822794f19?source=cve - Third Party Advisory
References () https://plugins.trac.wordpress.org/browser/custom-registration-form-builder-with-submission-manager/tags/6.0.2.6/public/controllers/class_rm_login_controller.php#L239 - () https://plugins.trac.wordpress.org/browser/custom-registration-form-builder-with-submission-manager/tags/6.0.2.6/public/controllers/class_rm_login_controller.php#L239 - Product
References () https://plugins.trac.wordpress.org/browser/custom-registration-form-builder-with-submission-manager/tags/6.0.2.6/public/controllers/class_rm_login_controller.php#L241 - () https://plugins.trac.wordpress.org/browser/custom-registration-form-builder-with-submission-manager/tags/6.0.2.6/public/controllers/class_rm_login_controller.php#L241 - Product
CWE CWE-230 NVD-CWE-noinfo
First Time Metagauss
Metagauss registrationmagic
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : unknown

09 Nov 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-09 08:15

Updated : 2025-01-29 19:29


NVD link : CVE-2024-10508

Mitre link : CVE-2024-10508


JSON object : View

Products Affected

metagauss

  • registrationmagic