The Order Delivery Date WordPress plugin before 12.3.1 does not have authorization and CSRF checks when importing settings. Furthermore it also lacks proper checks to only update options relevant to the Order Delivery Date WordPress plugin before 12.3.1. This leads to attackers being able to modify the default_user_role to administrator and users_can_register, allowing them to register as an administrator of the site for complete site takeover.
History

Wed, 14 May 2025 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Tychesoftwares
Tychesoftwares order Delivery Date Pro For Woocommerce
Weaknesses CWE-352
CPEs cpe:2.3:a:tychesoftwares:order_delivery_date_pro_for_woocommerce:*:*:*:*:*:wordpress:*:*
Vendors & Products Tychesoftwares
Tychesoftwares order Delivery Date Pro For Woocommerce

Tue, 29 Apr 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Sat, 26 Apr 2025 06:15:00 +0000

Type Values Removed Values Added
Description The Order Delivery Date WordPress plugin before 12.3.1 does not have authorization and CSRF checks when importing settings. Furthermore it also lacks proper checks to only update options relevant to the Order Delivery Date WordPress plugin before 12.3.1. This leads to attackers being able to modify the default_user_role to administrator and users_can_register, allowing them to register as an administrator of the site for complete site takeover.
Title Order Delivery Date Pro for WooCommerce < 12.3.1 - Unauthenticated Arbitrary Option Update
References

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2025-04-26T06:00:05.145Z

Updated: 2025-04-29T15:22:24.627Z

Reserved: 2025-03-28T09:37:43.776Z

Link: CVE-2025-2907

cve-icon Vulnrichment

Updated: 2025-04-29T14:58:40.276Z

cve-icon NVD

Status : Analyzed

Published: 2025-04-26T06:15:16.087

Modified: 2025-05-14T19:52:38.233

Link: CVE-2025-2907

cve-icon Redhat

No data.