<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:nokri:job_board_wordpress_theme:*:*:*:*:*:wordpress:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3anokrijob_board_wordpress_themewordpress/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Sat, 05 Sep 2026 13:32:04 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3anokrijob_board_wordpress_themewordpress/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Privilege Escalation Vulnerability in Nokri Job Board WordPress Theme</title><link>https://feed.craftedsignal.io/briefs/2026-09-nokri-theme-privilege-escalation/</link><pubDate>Sat, 05 Sep 2026 13:32:04 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-nokri-theme-privilege-escalation/</guid><description>The Nokri Job Board WordPress theme (&lt;= 1.6.4) is vulnerable to privilege escalation via a missing capability check in the 'nokri_account_member_permissions' function, allowing authenticated subscribers to escalate access.</description><content:encoded><![CDATA[<p>The Nokri - Job Board WordPress Theme for WordPress, in all versions up to and including 1.6.4, contains a critical security vulnerability involving a missing capability check within the 'nokri_account_member_permissions' function. This flaw allows an authenticated attacker, specifically those with Subscriber-level privileges, to interact with the function to add new users as employer account members. By abusing this capability, an attacker can modify the email addresses of existing users, including those with Administrator privileges. This email modification allows the attacker to trigger password reset procedures, effectively facilitating full account takeover of administrative accounts. The vulnerability stems from improper input validation and insufficient authorization controls within the theme's member management features, posing a significant risk to the integrity and security of the WordPress instance.</p>
<h2 id="attack-chain">Attack Chain</h2>
<ol>
<li>Attacker authenticates to the target WordPress site with low-privilege Subscriber credentials.</li>
<li>Attacker crafts an HTTP POST request targeting the vulnerable 'nokri_account_member_permissions' function.</li>
<li>The vulnerable theme code fails to verify if the requesting user possesses administrative or sufficient employer-level permissions.</li>
<li>Attacker injects parameters to add a new Subscriber user with employer-level account member privileges.</li>
<li>Attacker logs into or uses the elevated employer member account to access user profile modification features.</li>
<li>Attacker updates the email address of a target Administrator account to an attacker-controlled email address.</li>
<li>Attacker initiates a standard 'Forgot Password' request for the hijacked Administrator account.</li>
<li>Attacker receives the password reset token at the attacker-controlled email address to complete the account takeover.</li>
</ol>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability leads to full administrative account takeover. Attackers can gain control over the entire WordPress site, potentially resulting in data exfiltration, unauthorized content modification, installation of malicious plugins, or complete site defacement. The scope is limited to WordPress installations utilizing the Nokri - Job Board WordPress Theme versions 1.6.4 and below.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Prioritize the immediate update of the Nokri - Job Board WordPress Theme to the latest available version provided by the vendor. In environments where immediate patching is not possible, implement strict access controls on registration and user modification endpoints. Enable detailed server-side request logging to monitor for unauthorized calls to the 'nokri_account_member_permissions' function.</p>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>wordpress</category><category>privilege-escalation</category><category>web-application-vulnerability</category></item></channel></rss>