The Donation Forms by Charitable plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.7.0.12 due to insufficient restriction on the update_core_user function. This makes it possible for unauthenticated attackers to specify their user role by supplying the role parameter during a registration.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Charitable | Wpcharitable | * | 1.7.0.12 (including) |