Loading HuntDB...

Privilege Escalation via REST API to Administrator leads to RCE

High
W
WordPress
Submitted None

Team Summary

Official summary from WordPress

Kien Hoang reported a privilege escalation vulnerability in the BuddyPress REST-API. Through this issue, if registrations for new users is enabled, a non-admin user can gain administrator access on the site. The administrator access can then lead to remote code execution, as admins have the right to run code on the site.

Reported by hoangkien1020

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Privilege Escalation