Vulnerabilities > Wpmembership > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-06-03 | CVE-2015-4038 | Permissions, Privileges, and Access Controls vulnerability in Wpmembership 1.2.3 The WP Membership plugin 1.2.3 for WordPress allows remote authenticated users to gain administrator privileges via an iv_membership_update_user_settings action to wp-admin/admin-ajax.php. | 6.5 |