Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 21 Jan 2026 05:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 19 Jan 2026 18:45:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Metagauss
Metagauss registrationmagic Wordpress Wordpress wordpress |
|
| Vendors & Products |
Metagauss
Metagauss registrationmagic Wordpress Wordpress wordpress |
Sat, 17 Jan 2026 11:30:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The RegistrationMagic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.0.7.1. This is due to the 'add_menu' function is accessible via the 'rm_user_exists' AJAX action and allows arbitrary updates to the 'admin_order' setting. This makes it possible for unauthenticated attackers to injecting an empty slug into the order parameter, and manipulate the plugin's menu generation logic, and when the admin menu is subsequently built, the plugin adds 'manage_options' capability for the target role. Note: The vulnerability can only be exploited unauthenticated, but further privilege escalation requires at least a subscriber user. | |
| Title | RegistrationMagic <= 6.0.7.1 - Privilege Escalation via admin_order | |
| Weaknesses | CWE-269 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-01-20T19:24:15.898Z
Reserved: 2025-12-31T17:02:01.026Z
Link: CVE-2025-15403
Updated: 2026-01-20T18:41:15.928Z
Status : Received
Published: 2026-01-17T03:16:03.693
Modified: 2026-01-17T03:16:03.693
Link: CVE-2025-15403
No data.
OpenCVE Enrichment
Updated: 2026-01-19T18:19:32Z