Incorrect Privilege Assignment vulnerability in Madiri Salman Aashish Adding drop down roles in registration allows Privilege Escalation.This issue affects Adding drop down roles in registration: from n/a through 1.1.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-43288 Incorrect Privilege Assignment vulnerability in Madiri Salman Aashish Adding drop down roles in registration allows Privilege Escalation.This issue affects Adding drop down roles in registration: from n/a through 1.1.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 13 Jul 2025 22:45:00 +0900

Type Values Removed Values Added
Metrics epss

{'score': 0.00117}

epss

{'score': 0.0012}


Thu, 07 Nov 2024 06:15:00 +0900

Type Values Removed Values Added
First Time appeared Madirisalmanaashish
Madirisalmanaashish adding Drop Down Roles In Registration
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:a:madirisalmanaashish:adding_drop_down_roles_in_registration:*:*:*:*:*:wordpress:*:*
Vendors & Products Madirisalmanaashish
Madirisalmanaashish adding Drop Down Roles In Registration

Fri, 18 Oct 2024 04:15:00 +0900

Type Values Removed Values Added
First Time appeared Madiri Salman Aashish
Madiri Salman Aashish user-drop-down-roles-in-registration
CPEs cpe:2.3:a:madiri_salman_aashish:user-drop-down-roles-in-registration:*:*:*:*:*:*:*:*
Vendors & Products Madiri Salman Aashish
Madiri Salman Aashish user-drop-down-roles-in-registration
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Oct 2024 02:45:00 +0900

Type Values Removed Values Added
Description Incorrect Privilege Assignment vulnerability in Madiri Salman Aashish Adding drop down roles in registration allows Privilege Escalation.This issue affects Adding drop down roles in registration: from n/a through 1.1.
Title WordPress Adding drop down roles in registration plugin <= 1.1 - Privilege Escalation vulnerability
Weaknesses CWE-266
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2024-10-17T18:46:47.765Z

Reserved: 2024-10-14T10:38:52.857Z

Link: CVE-2024-49217

cve-icon Vulnrichment

Updated: 2024-10-17T18:46:35.852Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-17T18:15:08.830

Modified: 2024-11-06T20:53:26.900

Link: CVE-2024-49217

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses