Description
WordPress Plugin Profile Builder-User Profile & User Registration Forms is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently create new user accounts with admin privileges. WordPress Plugin Profile Builder-User Profile & User Registration Forms version 2.3.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.6 or latest
References
Related Vulnerabilities
Oracle JRE CVE-2013-2424 Vulnerability (CVE-2013-2424)
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (1.2)
WordPress Plugin Comments Like Dislike Security Bypass (1.1.3)
Claroline Other Vulnerability (CVE-2005-1377)
Internet Information Services Other Vulnerability (CVE-2001-0902)