漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Themehunk Login Registration <= 1.0.2 - Unauthenticated Privilege Escalation via 'role' Parameter
Vulnerability Description
The Themehunk Login Registration plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.0.2. This is due to the handle_frontend_register() function in the unauthenticated /thlogin/v1/register REST endpoint accepting a user-controlled 'role' parameter and validating it only against get_editable_roles() — which returns every defined editable site role, including 'editor' — before passing it to wp_insert_user(). This makes it possible for unauthenticated attackers, when public user registration is enabled, to create new accounts with the editor role.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
特权管理不恰当
Vulnerability Title
WordPress TH Login Registration 权限许可和访问控制问题漏洞
Vulnerability Description
WordPress TH Login Registration是WordPress基金会的一款网站登录与注册管理组件。 WordPress TH Login Registration 1.0.2及之前版本存在权限许可和访问控制问题漏洞,该漏洞源于未经身份验证的/thlogin/v1/register REST端点的handle_frontend_register()函数接受用户控制的'role'参数并仅针对get_editable_roles()进行验证,导致权限提升,未授权的攻击者可在公开用户注册启用时
CVSS Information
N/A
Vulnerability Type
N/A