8.1
CVSSv3

CVE-2021-24647

Published: 08/11/2021 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin prior to 3.1.7.6 has a flaw in the social login implementation, allowing unauthenticated malicious user to login as any user on the site by only knowing their user ID or username

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

genetechsolutions pie register

Github Repositories

CVE-2021-24647 Pie Register < 3.7.1.6 - Unauthenticated Arbitrary Login

CVE-2021-24647 CVE-2021-24647 Pie Register &lt; 3716 - Unauthenticated Arbitrary Login Info usage: exploitpy [-h] -w URL [-p PATH] options: -h, --help show this help message and exit -w URL, --url URL URL of the WordPress site -p PATH, --path PATH Path of the Login Page /login/ or /pie-registration/ How to u