Ultimate Member Wordpress Plugin: local file inclusion
Description
Some versions of Ultimate Member Wordpress Plugin are vulnerable to a local file inclusion vulnerability. Attackers may use this vulnerability to execute local code on the server.
Default
configuration
Profiles
High
Medium
Low
Internet
Action
Block
Block
Block
Block
Alarm Level
Minor
Minor
Minor
Minor
References
URL:
https://sumofpwn.nl/advisory/2016/ultimate_member_local_file_inclusion_vulnerability.html
Available since
ASQ v5.0.0
Protects
Wordpress Multiple Third Party Plugins Vulnerabilities
100 last CVE
Risk level
Moderate