VulnerabilityAnalyzed
CVE-2024-6366
The User Profile Builder WordPress plugin before 3.11.8 does not have proper authorisation, allowing unauthenticated users to upload media files via the async upload functionality of WP.
CRITICAL 9.1EPSS 29.0%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 29.0%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The User Profile Builder WordPress plugin before 3.11.8 does not have proper authorisation, allowing unauthenticated users to upload media files via the async upload functionality of WP.
- CVSS 3.1
- 9.1 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
- EPSS
- 28.99% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-434
- Affected
- cozmoslabs/profile builder
- Source
- contact@wpscan.com
References
- https://wpscan.com/vulnerability/5b90cbdd-52cc-4e7b-bf39-bea0dd59e19e/Exploit, Third Party Advisory
- https://wpscan.com/vulnerability/5b90cbdd-52cc-4e7b-bf39-bea0dd59e19e/Exploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.