ThreatPress

WordPress Vulnerabilities Database

Back

WordPress iMember360 Plugin 3.8.012 - 3.9.001 - Multiple Vulnerabilities

Product
iMember360
Description
WordPress iMember360 plugin is prone to multiple vulnerabilities, such as XSS, arbitrary user deletion, arbitrary code execution and disclosure of database credentials vulnerabilities.
Solution
Upgrade the plugin.
Classification
Type Multi
References
Exploit-DB
CVE
Name CVE-2014-3842
Versions
Affected In 3.8.012 - 3.9.001
Fixed In 3.9.002
Disclosure date
2014-04-28
Credits
Everett Griffiths