Record summary

CVE-2022-4939 has a selected CVSS score of 9.8 (critical); EIP currently links 1 repository PoC.

Description

THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to, and including 2.10.0, due to a missing capability check on the wp_ajax_nopriv_wcfm_ajax_controller AJAX action that controls membership settings. This makes it possible for unauthenticated attackers to modify the membership registration form in a way that allows them to set the role for registration to that of any user including administrators. Once configured, the attacker can then register as an administrator.

Description source: CVE List

Exploitation context

Available material

Repository PoCs
1

CISA SSVC decision

ExploitationNone
AutomatableYes
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 13, 2025 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus

WCFM Membership – WooCommerce Memberships for Multivendor Marketplace

Browse wclovers / WCFM Membership – WooCommerce Memberships for Multivendor Marketplace

Default status: unaffected

CVE ListThrough 2.10.0affected

Proofs of concept

1

Repository PoCs

GitHubBaconCriCRi/PoC-CVE-2022-4939-Repository PoCby BaconCriCRiStars: 0Not analyzed3 files

1.2 KiB

GitHub

PoC details

References

3