CVE-2023-23488
100Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actcvss 9.8epss 92%
from disclosure to weapon13 days
Published on NVDJan 20
1st PoC+13d
metasploitJan 12
VulnCheckJan 14
exploitation probability
92%top 1% of all CVEs
observed exploitation
yesVulnCheck
7 public exploit(s)
In short
A WordPress plugin has a critical flaw that lets anyone inject harmful SQL commands through a web request, potentially exposing or stealing sensitive database information without needing to log in.
Technical detail
Unauthenticated SQL injection vulnerability in the Paid Memberships Pro plugin REST endpoint (/pmpro/v1/order) via the 'code' parameter allows remote attackers to execute arbitrary SQL queries, potentially leading to unauthorized data access, modification, or exfiltration of sensitive information including membership and payment data.
Summary generated and translated by AI from the official description.
The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code' parameter of the '/pmpro/v1/order' REST route.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · Paid Memberships Pro WordPress Pluginpublic PoCs found — 7✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/51235githubgithub.com/cybfar/CVE-2023-23488-pmpro-2.8★ 1githubgithub.com/long-rookie/CVE-2023-23488-PoC★ 0cve_referencepacketstormsecurity.com/files/171661/WordPress-Paid-Memberships-Pro-2.9.8-SQL-Injection.htmlunverifiedvulncheckvulncheck.com/xdb/1526831fe27bunverifiedvulncheckvulncheck.com/xdb/63268017dd69unverifiedvulncheckvulncheck.com/xdb/fae934c18159unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.