Input validation vulnerability in User Registration – Custom Registration Form, Login Form And User Profile For WordPress 3.0.2

The User Registration plugin for WordPress is vulnerable to unauthorized file uploads. This means that attackers with only basic user privileges can upload files to the affected site’s server which could allow them to run malicious code. The issue was partially fixed in version 3.0.2 of the plugin, and completely fixed in version 3.0.2.1.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.