Real Estate 7
cpe:2.3:a:contempothemes:real_estate_7:*:*:*:*:wordpress:*:*
- <= 3.5.1
A privilege escalation vulnerability has been identified in the Real Estate 7 WordPress theme, affecting all versions through 3.5.1. The issue arises because the theme does not properly limit the user roles that can be selected during the registration process. This flaw enables unauthenticated attackers to create new user accounts with administrative privileges.
Exploitation of this vulnerability allows unauthenticated users to gain administrative access by registering as new users with admin rights.
Users can update to version 3.5.2 or a newer patched version to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.