Impact
The vulnerability is in the Single Sign On For TNG WordPress plugin. Versions before 2.2.0 fail to verify that a password reset request originates from an authenticated session. As a result, an unauthenticated user can trigger a reset for any existing username, including administrators. The ability to set a known password for an administrator allows an attacker to gain full control over the site and all its data.
Affected Systems
WordPress sites that have installed the Single Sign On For TNG plugin with a version earlier than 2.2.0. No specific platform or additional product versions are listed, so any site using the affected plugin in any WordPress installation is susceptible.
Risk and Exploitability
The CVSS score of 9.8 indicates critical severity, and the EPSS score is < 1%, so while the likelihood of exploitation is low, the potential impact is catastrophic. The vulnerability is not listed in the CISA KEV catalog, but the lack of authentication for a privileged operation marks this as a high‑risk flaw. Attackers only need to craft a request to the password‑ reset endpoint; no user interaction or privileged credentials are required. Given the described impact, the risk of exploitation is significant and should be treated as a serious threat.
OpenCVE Enrichment