Vulnerabilities (CVE)

Filtered by vendor Ontraport Subscribe
Filtered by product Membership Simplified
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-1002010 1 Ontraport 1 Membership Simplified 2024-11-21 7.5 HIGH 9.8 CRITICAL
Vulnerability in wordpress plugin Membership Simplified v1.58, The code in membership-simplified-for-oap-members-only/updateDB.php is vulnerable to blind SQL injection because it doesn't sanitize user input via recordId in the delete_media function.
CVE-2017-1002009 1 Ontraport 1 Membership Simplified 2024-11-21 7.5 HIGH 9.8 CRITICAL
Vulnerability in wordpress plugin Membership Simplified v1.58, The code in membership-simplified-for-oap-members-only/updateDB.php is vulnerable to blind SQL injection because it doesn't sanitize user input via recordId in the delete function.