Impact
The vulnerability allows an attacker who has no existing credentials to register a new account by supplying the 'listing_user_role' parameter and assigning the highest available role. This results in the account gaining full administrator privileges, providing the attacker complete control over the WordPress site including content, settings, and other users.
Affected Systems
The affected product is the SmartDataSoft Clasifico Listing WordPress plugin, all released versions up to and including 2.0 are impacted.
Risk and Exploitability
The CVSS score of 9.8 marks it as critical, and although the EPSS score is under 1% and it is not current in the CISA KEV catalog, the flaw is exploitable with no authentication required. An attacker only needs to craft a registration request containing the privileged role parameter to create an admin user and gain privileged access.
OpenCVE Enrichment