Skip to content

WordPress Pie Register <3.8.2.3 - Open Redirect

ID: CVE-2023-0552

Severity: medium

Author: r3Y3r53

Tags: cve2023,cve,redirect,pie,pie-register,wpscan,genetechsolutions,wordpress

WordPress Pie Register plugin before 3.8.2.3 contains an open redirect vulnerability. The plugin does not properly validate the redirection URL when logging in and login out. An attacker can redirect a user to a malicious site and possibly obtain sensitive information, modify data, and/or execute unauthorized operations.

id: CVE-2023-0552
info:
name: WordPress Pie Register <3.8.2.3 - Open Redirect
author: r3Y3r53
severity: medium
description: |
WordPress Pie Register plugin before 3.8.2.3 contains an open redirect vulnerability. The plugin does not properly validate the redirection URL when logging in and login out. An attacker can redirect a user to a malicious site and possibly obtain sensitive information, modify data, and/or execute unauthorized operations.
remediation: |
Fixed in version 3.8.2.3.
reference:
- https://wpscan.com/vulnerability/832c6155-a413-4641-849c-b98ba55e8551
- https://nvd.nist.gov/vuln/detail/CVE-2023-0552
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
cvss-score: 5.4
cve-id: CVE-2023-0552
cwe-id: CWE-601
epss-score: 0.00092
epss-percentile: 0.39168
cpe: cpe:2.3:a:genetechsolutions:pie_register:*:*:*:*:*:wordpress:*:*
metadata:
verified: true
max-request: 1
vendor: genetechsolutions
product: pie_register
framework: wordpress
tags: cve2023,cve,redirect,pie,pie-register,wpscan,genetechsolutions,wordpress
http:
- method: GET
path:
- "{{BaseURL}}/wp-admin?piereg_logout_url=true&redirect_to=https://oast.me"
redirects: true
matchers:
- type: regex
part: header
regex:
- '(?m)^(?:Location\s*?:\s*?)(?:https?://|//)(?:[a-zA-Z0-9\-_\.@]*)oast\.me.*$'
# digest: 4a0a00473045022100b62ea2244ba97ecae5576ea90d732af6f93bbfb5f031afecb0264af84c2783130220197f5290cf9ea809c888e055200198dda04eda769709996f6dc3ece5df395492:922c64590222798bb761d5b6d8e72950

This template is used to detect vulnerabilities in web applications. It can be used with the Nuclei tool to scan for specific patterns or behaviors.

Terminal window
$ nuclei -u "URL" -t "http/cves/2023/CVE-2023-0552.yaml"

View on Github