CVE-2024-1071 Scanner

CVE-2024-1071 scanner - SQL Injection vulnerability in WordPress Ultimate Member


CVE-2024-1071 Scanner Detail

WordPress Ultimate Member is a popular plugin utilized by WordPress website administrators for managing user profiles, registrations, logins, and content restrictions. It serves the purpose of creating member directories and controlling membership access on WordPress-based platforms. However, versions 2.1.3 to 2.8.2 of the plugin are vulnerable to SQL Injection attacks due to insufficient sanitization of user-supplied input and inadequate preparation of SQL queries.

The vulnerability detected in WordPress Ultimate Member versions 2.1.3 to 2.8.2 involves SQL Injection, allowing unauthenticated attackers to manipulate SQL queries via the 'sorting' parameter. Due to improper input validation and lack of query preparation, attackers can inject malicious SQL code into existing queries, potentially leading to unauthorized access to sensitive database information.

The SQL Injection vulnerability in WordPress Ultimate Member is exploited by crafting malicious POST requests to the '/wp-admin/admin-ajax.php' endpoint with a payload appended to the 'sorting' parameter. By injecting SQL commands, such as sleep(), attackers can delay responses and extract sensitive data from the database. The lack of proper input sanitization and query preparation exacerbates the risk of successful exploitation.

Exploiting the SQL Injection vulnerability in WordPress Ultimate Member may lead to unauthorized access to sensitive user data stored in the WordPress database. Attackers can extract user credentials, personal information, and other sensitive data, compromising the confidentiality and integrity of user accounts. Furthermore, the exploitation can facilitate further attacks, such as privilege escalation or credential theft.

