KEVIntel
8.1
CVSS
High

CVE-2025-3102

PUBLISHED

SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation

PoC available Remote No user interaction
Vendor
brainstormforce
Product
OttoKit: All-in-One Automation Platform (Formerly SureTriggers)
Published
Apr 10, 2025
EPSS
0.2% · 43% pctl

Description

The SureTriggers: All-in-One Automation Platform plugin for WordPress is vulnerable to an authentication bypass leading to administrative account creation due to a missing empty value check on the 'secret_key' value in the 'autheticate_user' function in all versions up to, and including, 1.0.78. This makes it possible for unauthenticated attackers to create administrator accounts on the target website when the plugin is installed and activated but not configured with an API key.

wordpress nuclei_scanner metasploit

CVSS scores

CVSS v3.1 8.1 High

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Exploitation status

Proof of concept available

Recorded 2025-04-25 23:28:10 UTC · Source

SSVC decision points

Exploitation
none
Automatable
No
Technical impact
total

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
Wordfence Apr 09, 2025

Potential proof of concepts

These PoCs are unverified and could contain malware. Use at your own risk.

SUPRAAA-1337/CVE-2025-3102-exploit

github · Created 2025-04-25 23:28:10 UTC · 1 stars

Exploitation of an authorization bypass vulnerability in the SureTriggers plugin for WordPress versions <= 1.0.78, allowing unauthenticated attackers to create new WordPress users.

SUPRAAA-1337/CVE-2025-3102_v2

github · Created 2025-04-25 12:13:44 UTC · 0 stars

Checks the SureTriggers WordPress plugin's readme.txt file for the Stable tag version. If the version is less than or equal to 1.0.78, it is considered vulnerable.0.78).

SUPRAAA-1337/CVE-2025-3102

github · Created 2025-04-25 11:56:45 UTC · 0 stars

Detects the version of the SureTriggers WordPress plugin from exposed asset URLs and compares it to determine if it's vulnerable (<= 1.0.78).

dennisec/CVE-2025-3102

github · Created 2025-04-20 13:59:57 UTC · 0 stars

rhz0d/CVE-2025-3102

github · Created 2025-04-14 16:07:50 UTC · 1 stars

Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation

Nxploited/CVE-2025-3102

github · Created 2025-04-14 10:20:47 UTC · 1 stars

Wordpress SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation

itsismarcos/vanda-CVE-2025-3102

github · Created 2025-04-12 04:22:58 UTC · 1 stars

EXPLOIT CVE-2025-3102

Timeline

  • CVE ID Reserved

  • Added to KEVIntel

  • CVE Published to Public

  • Proof of Concept Exploit Available

  • Detected by Nuclei

  • Detected by Metasploit