CVE-2015-4038

The WP Membership plugin 1.2.3 for WordPress allows remote authenticated users to gain administrator privileges via an iv_membership_update_user_settings action to wp-admin/admin-ajax.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpmembership:wpmembership:1.2.3:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2015-06-03 20:59

Updated : 2024-02-28 15:21


NVD link : CVE-2015-4038

Mitre link : CVE-2015-4038

CVE.ORG link : CVE-2015-4038


JSON object : View

Products Affected

wpmembership

  • wpmembership
CWE
CWE-264

Permissions, Privileges, and Access Controls