Vulnerability Details
Basic Information
| Title | CVE-2025-2470 |
|---|---|
| Type | nvd |
| Published | 2025-04-25T12:15:16 |
| Last Seen | 2025-04-25T12:29:12 |
| CVSS Score | 9.8 (CRITICAL) |
CVSS v3 Details
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
CVE Information
| CVE IDs | CVE-2025-2470 |
|---|---|
| CWE | CWE-266 |
| Bulletin Family | cve |
Description
The Service Finder Bookings plugin for WordPress, used by the Service Finder – Directory and Job Board WordPress Theme, is vulnerable to privilege escalation in all versions up to, and including, 5.1. This is due to a lack of restriction on user role in the ‘nsl_registration_store_extra_input’ function. This makes it possible for unauthenticated attackers to register an account on the site with an arbitrary role, including Administrator, when registering via a social login. The Nextend Social Login plugin must be installed and configured to exploit the vulnerability.
Impact Assessment
| Base Score | 9.8 |
|---|---|
| Severity | CRITICAL |