CVE-2023-4140

MEDIUM

WP Ultimate CSV Importer < 7.9.8 - Authenticated Privilege Escalation via wp_capabilities Parameter

Title source: llm
STIX 2.1

Description

The WP Ultimate CSV Importer plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 7.9.8 due to insufficient restriction on the 'get_header_values' function. This makes it possible for authenticated attackers, with minimal permissions such as an author, if the administrator previously grants access in the plugin settings, to modify their user role by supplying the 'wp_capabilities->cus1' parameter.

Scores

CVSS v3 6.6
EPSS 0.0061
EPSS Percentile 44.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-269
Status published
Products (2)
smackcoders/WP Ultimate CSV Importer – Import CSV, XML & Excel into WordPress < 7.9.8
smackcoders/wp_ultimate_csv_importer < 7.9.8
Published Aug 04, 2023
Tracked Since Feb 18, 2026