WordPress <= 4.0 - CSRF in wp-login.php Password Reset



Description
WordPress 4.0.1 adds a CSRF token called 'rp_key' to the password reset form on wp-login.php. Prior versions are vulnerable to CSRF.

Affects WordPresses

fixed in version 4.0.1
fixed in version 4.0.1
fixed in version 4.0.1
fixed in version 4.0.1

References

CVE 2014-9033
URL https://core.trac.wordpress.org/changeset/30418

Classification

Type CSRF
CWE CWE-352

Miscellaneous

Submitter ethicalhack3r
Submitter Website https://dewhurstsecurity.com/
Submitter Twitter ethicalhack3r
Views 35247
Verified No
WPVDB ID 7691

Timeline

Publicly Published 2014-11-25 (about 5 years ago)
Added 2014-11-25 (about 5 years ago)
Last Updated 2019-10-21 (about 2 months ago)

Our Other Services

Online WordPress Vulnerability Scanner WPScan WordPress Security Plugin