Privilege Escalation via REST API to Administrator leads to RCE
High
W
WordPress
Submitted None
Team Summary
Official summary from WordPress
Kien Hoang reported a privilege escalation vulnerability in the BuddyPress REST-API. Through this issue, if registrations for new users is enabled, a non-admin user can gain administrator access on the site. The administrator access can then lead to remote code execution, as admins have the right to run code on the site.
Actions:
Reported by
hoangkien1020
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Privilege Escalation