Record summary

CVE-2022-4305 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

The Login as User or Customer WordPress plugin before 3.3 lacks authorization checks to ensure that users are allowed to log in as another one, which could allow unauthenticated attackers to obtain a valid admin session.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 2, 2025 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

Login as User or Customer

Default status: unaffected

CVE ListBefore 3.3affected

Nuclei templates

1
ProjectDiscoveryCRITICALLogin as User or Customer < 3.3 - Privilege EscalationCVSS 9.8

The plugin lacks authorization checks to ensure that users are allowed to log in as another one, which could allow unauthenticated attackers to obtain a valid admin session.

Impact

Unauthenticated attackers can obtain valid admin sessions by exploiting missing authorization checks in the Login as User or Customer plugin, potentially gaining complete control over the WordPress site and all user accounts.

Remediation

Fixed in version 3.3

WeaknessesCWE-269
Authorsr3Y3r53
Template tagscvecve2022wpscanwordpresswp-pluginwplogin-as-customer-or-userauth-bypasswp-buyvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:wp-buy:login_as_user_or_customer_\(user_switching\):*:*:*:*:*:wordpress:*:*
Shodan: http.html:/wp-content/plugins/login-as-customer-or-user
FOFA: body=/wp-content/plugins/login-as-customer-or-user

Source: ProjectDiscovery

References

2