Input validation vulnerability in Import and export users and customers 1.24.2

The Import and Export Users and Customers plugin for WordPress is a tool used to transfer information about users and customers between WordPress websites. A security vulnerability has been discovered in versions of the plugin up to and including 1.24.2. This vulnerability can be exploited by attackers who have administrator access and above, allowing them to read and delete the contents of any file on the server, including one which may contain sensitive information known as wp-config.php.

Detected in:

Import and export users and customers fixed vulnerable versions: >= * <= 1.24.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.