PT-2025-23281 · WordPress · Browse As

·

CVE-2025-5190

·

Publicado

2025-05-30

·

Atualizado

2025-06-04

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Browse As plugin for WordPress versions up to, and including, 0.2
Description The issue is due to incorrect authentication checking in the IS BA Browse As::notice function with the is ba original user COOKIEHASH cookie value. This allows authenticated attackers with subscriber-level permissions and above to log in as any existing user on the site, such as an administrator, if they have access to the user id.
Recommendations For versions up to, and including, 0.2, consider disabling the IS BA Browse As::notice function until a patch is available to prevent exploitation. Restrict access to sensitive user information, such as user id, to minimize the risk of unauthorized access.

Correção

Authentication Bypass Using an Alternate Path or Channel

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-5190

Produtos afetados

Browse As