CVE-2022-4239
Workreap < 2.6.4 - Subscriber+ Arbitrary Posts Deletion via IDOR
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The Workreap WordPress theme before 2.6.4 does not verify that an addon service belongs to the user issuing the request, or indeed that it is an addon service, when processing the workreap_addons_service_remove action, allowing any user to delete any post by knowing or guessing the id.
El tema Workreap WordPress anterior a 2.6.4 no verifica que un servicio complementario pertenezca al usuario que emite la solicitud, o incluso que sea un servicio complementario, al procesar la acción workreap_addons_service_remove, lo que permite a cualquier usuario eliminar cualquier publicación conociendo o adivinando la identificación.
The Workreap theme for WordPress is vulnerable to insecure direct object reference in versions up to, and including, 2.6.3. This is due to missing validation on if an addon service belongs to an individual making a request to the workreap_addons_service_remove action. This makes it possible for authenticated attackers to call arbitrary addon services and delete posts.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-11-30 CVE Reserved
- 2022-12-02 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-639: Authorization Bypass Through User-Controlled Key
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://wpscan.com/vulnerability/1c163987-fb53-43f7-bbff-1c2d8c0d694c | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Amentotech Search vendor "Amentotech" | Workreap Search vendor "Amentotech" for product "Workreap" | < 2.6.4 Search vendor "Amentotech" for product "Workreap" and version " < 2.6.4" | wordpress |
Affected
|