CRITICAL

CVE-2020-36155

CVSS v3

9.8

CRITICAL

EPSS Score

62.0%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

An issue was discovered in the Ultimate Member plugin before 2.1.12 for WordPress, aka Unauthenticated Privilege Escalation via User Meta. An attacker could supply an array parameter for sensitive metadata, such as the wp_capabilities user meta that defines a user's role. During the registration process, submitted registration details were passed to the update_profile function, and any metadata was accepted, e.g., wp_capabilities[administrator] for Administrator access.

Technical details

Published
1/4/2021

Frequently asked questions

What is CVE-2020-36155?

An issue was discovered in the Ultimate Member plugin before 2.1.12 for WordPress, aka Unauthenticated Privilege Escalation via User Meta. An attacker could supply an array parameter for sensitive metadata, such as the wp_capabilities user meta that defines a user's role. During the registration process, submitted registration details were passed to the update_profile function, and any metadata was accepted, e.g., wp_capabilities[administrator] for Administrator access.

Is CVE-2020-36155 actively exploited?

Active exploitation of CVE-2020-36155 has not been confirmed. The EPSS score is 62.0%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2020-36155?

CVE-2020-36155 has a CVSS v3 base score of 9.8 (CRITICAL severity).

Is CVE-2020-36155 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.