CVE-2018-0589
—CVSS 3.0
4.3 medium
EPSS
1%p64
Published
()
Modified
Description
Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to bypass access restriction to add a new form in the 'Forms' page via unspecified vectors.
- Vendors
- ultimatemember
- Products
- user profile \& membership
- Ecosystems
- WordPress
- Vector
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.