WP Directory Kit < 1.5.7 - Unauthenticated User Email Disclosure via select_2_ajax_user
33Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 5.3epss 0.3%
exploitation probability
0.3%top 83% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The WP Directory Kit WordPress plugin before 1.5.7 does not perform any authorization check on one of its public AJAX actions and returns unfiltered database rows, allowing unauthenticated attackers to retrieve the usernames and email addresses of users holding the WP Directory Kit WordPress plugin before 1.5.7's own roles.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected products
Unknown · WP Directory Kitpublic PoCs found — 1
cve_referencewpscan.com/vulnerability/c4508c33-40ac-42c6-aa7e-cf9004d381bd/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.