← back
CVE-2024-10924criticalobserved exploitationCWE-288

Really Simple Security (Free, Pro, and Pro Multisite) 9.0.0 - 9.1.1.1 - Authentication Bypass

100Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actcvss 9.8epss 82%
from disclosure to weapon0 days
Published on NVDNov 15
1st PoCNov 14
metasploitNov 14
VulnCheckNov 14
exploitation probability
82%top 1% of all CVEs
observed exploitation
yesVulnCheck
39 public exploit(s)
The Really Simple Security (Free, Pro, and Pro Multisite) plugins for WordPress are vulnerable to authentication bypass in versions 9.0.0 to 9.1.1.1. This is due to improper user check error handling in the two-factor REST API actions with the 'check_login_and_get_user' function. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, when the "Two-Factor Authentication" setting is enabled (disabled by default).
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
public PoCs found39
exploitdbwww.exploit-db.com/exploits/52207unverifiedgithubgithub.com/m3ssap0/wordpress-really-simple-security-authn-bypass-exploit19githubgithub.com/JoshuaProvoste/0-click-RCE-Exploit-for-CVE-2024-1092414githubgithub.com/m3ssap0/wordpress-really-simple-security-authn-bypass-vulnerable-application8githubgithub.com/Maalfer/CVE-2024-10924-PoC6githubgithub.com/RandomRobbieBF/CVE-2024-109244githubgithub.com/D1se0/CVE-2024-10924-Bypass-MFA-Wordpress-LAB4githubgithub.com/ademto/wordpress-cve-2024-10924-pentest3githubgithub.com/Trackflaw/CVE-2024-10924-Wordpress-Docker3githubgithub.com/Nxploited/CVE-2024-10924-Exploit2githubgithub.com/h8sU/wordpress-cve-2024-10924-exploit2githubgithub.com/MaleeshaUdan/wordpress-CVE-2024-10924--exploit1githubgithub.com/d0x-awrqxavc/-CVE-2024-109240githubgithub.com/julesbsz/CVE-2024-109240githubgithub.com/sariamubeen/CVE-2024-109240githubgithub.com/sharafu-sblsec/CVE-2024-109240githubgithub.com/Hunt3r850/CVE-2024-10924-PoC0githubgithub.com/Hunt3r850/CVE-2024-10924-Wordpress-Docker0githubgithub.com/MattJButler/CVE-2024-109240githubgithub.com/cy3erdr4g0n/CVE-2024-109240githubgithub.com/bodoinon/CVE-2024-109240vulncheckvulncheck.com/xdb/a74366f1cd84unverifiedvulncheckvulncheck.com/xdb/1997d266f939unverifiedvulncheckvulncheck.com/xdb/8634c35fdcb0unverifiedvulncheckvulncheck.com/xdb/76c914e1bdd9unverifiedvulncheckvulncheck.com/xdb/13284a68c78aunverifiedvulncheckvulncheck.com/xdb/85d4b8964e2aunverifiedvulncheckvulncheck.com/xdb/7a0dbe5aa614unverifiedvulncheckvulncheck.com/xdb/ae64ddac2bbaunverifiedvulncheckvulncheck.com/xdb/7dd188d235deunverifiedvulncheckvulncheck.com/xdb/1c53cd3c68d3unverifiedvulncheckvulncheck.com/xdb/8bcaff452a99unverifiedvulncheckvulncheck.com/xdb/e6fb94b04b8eunverifiedvulncheckvulncheck.com/xdb/1d9c43a3144bunverifiedvulncheckvulncheck.com/xdb/8e53b1ad6a94unverifiedvulncheckvulncheck.com/xdb/425971f1cc80unverifiedvulncheckvulncheck.com/xdb/09e17f47becfunverifiedvulncheckvulncheck.com/xdb/420953eef7a7unverifiedvulncheckvulncheck.com/xdb/0663a7f06bf8unverified
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.