Record summary

CVE-2024-6289 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.

Description

The WPS Hide Login WordPress plugin before 1.9.16.4 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page.

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 24, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

WPS Hide Login

Default status: unaffected

CVE ListBefore 1.9.16.4affected

Default status: unknown

CVE ListBefore 1.9.16.4affected

Nuclei templates

1
ProjectDiscoveryMEDIUMWPS Hide Login < 1.9.16.4 - Hidden Login Page Disclosure

The WPS Hide Login WordPress plugin before 1.9.16.4 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page.

Impact

Unauthenticated attackers can discover and access the hidden WordPress login page by exploiting improper redirect handling, defeating the security-by-obscurity measure.

Remediation

Update WPS Hide Login plugin to version 1.9.16.4 or later to address the login page disclosure vulnerability.

Authorss4e-io
Template tagscvecve2024bypasswp-pluginwpscanwordpresswps-hide-loginvuln

Source: ProjectDiscovery

References

2