Impact
A subscriber can elevate privileges in the Directories Pro plugin for WordPress versions up to 2.0.5. The flaw arises because the plugin fails to enforce proper authorization checks, allowing an account with subscriber-level permissions to gain higher administrative capabilities. This leads to potential unauthorized configuration changes, content manipulation, or other actions normally restricted to administrators.
Affected Systems
The vulnerability affects the Directories Pro plugin developed by Onokazu. All installations of this plugin with a version of 2.0.5 or earlier are susceptible; newer releases have the issue resolved.
Risk and Exploitability
The CVSS score of 7.7 classifies the vulnerability as high severity. EPSS data is not available, but the lack of an exploitation probability score coupled with the fact that the vuln permits privileged escalation suggests that attackers who can authenticate as a subscriber could exploit it with moderate effort. Because it is not listed in CISA KEV, there is currently no evidence of widespread exploitation, but the permission‑bypass nature warrants immediate attention. The likely attack vector involves an authenticated user who gains sufficient access to trigger the plugin’s privilege modification path, as the backlog indicates missing role validation in the code.
OpenCVE Enrichment