CVE-2025-2470

The Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Board WordPress Theme, is vulnerable to privilege escalation in all versions up to, and including, 5.1. This is due to a lack of restriction on user role in the 'nsl_registration_store_extra_input' function. This makes it possible for unauthenticated attackers to register an account on the site with an arbitrary role, including Administrator, when registering via a social login. The Nextend Social Login plugin must be installed and configured to exploit the vulnerability.
Configurations

No configuration.

History

29 Apr 2025, 13:52

Type Values Removed Values Added
Summary
  • (es) El complemento Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Board WordPress Theme, es vulnerable a la escalada de privilegios en todas las versiones hasta la 5.1 incluida. Esto se debe a la falta de restricción del rol de usuario en la función 'nsl_registration_store_extra_input'. Esto permite que atacantes no autenticados registren una cuenta en el sitio con un rol arbitrario, incluido el de Administrador, al registrarse mediante inicio de sesión con redes sociales. El complemento Nextend Social Login debe estar instalado y configurado para explotar esta vulnerabilidad.

25 Apr 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-25 12:15

Updated : 2025-04-29 13:52


NVD link : CVE-2025-2470

Mitre link : CVE-2025-2470

CVE.ORG link : CVE-2025-2470


JSON object : View

Products Affected

No product.

CWE
CWE-266

Incorrect Privilege Assignment