The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.9.6. This is due to the 'watchtower_ota_token' default value is empty, and the not empty check is missing in the 'Password_Less_Access::login' function. This makes it possible for unauthenticated attackers to log in to the WatchTowerHQ client administrator user.
History

Mon, 28 Oct 2024 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Watchtowerhq
Watchtowerhq watchtower
CPEs cpe:2.3:a:watchtowerhq:watchtower:*:*:*:*:*:wordpress:*:*
Vendors & Products Watchtowerhq
Watchtowerhq watchtower
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Sat, 26 Oct 2024 02:30:00 +0000

Type Values Removed Values Added
Description The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.9.6. This is due to the 'watchtower_ota_token' default value is empty, and the not empty check is missing in the 'Password_Less_Access::login' function. This makes it possible for unauthenticated attackers to log in to the WatchTowerHQ client administrator user.
Title WatchTowerHQ <= 3.9.6 - Authentication Bypass to Administrator due to Missing Empty Value Check
Weaknesses CWE-288
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published: 2024-10-26T01:58:35.013Z

Updated: 2024-10-28T19:39:04.770Z

Reserved: 2024-10-14T11:53:51.301Z

Link: CVE-2024-9933

cve-icon Vulnrichment

Updated: 2024-10-28T19:38:54.979Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-10-26T03:15:05.207

Modified: 2024-10-28T13:58:09.230

Link: CVE-2024-9933

cve-icon Redhat

No data.