Access violation vulnerability in ForumWP – Forum & Discussion Board Plugin 2.0.2

A popular plugin for WordPress called ForumWP has a security issue that could allow unauthorized people to gain more control than they should have. This is because the plugin doesn’t properly check who is trying to make changes to the forum. This means that someone with even just basic access to the forum could potentially change the email of an admin user and use that to reset their password and take over their account.

Detected in:

ForumWP – Forum & Discussion Board fixed vulnerable versions:
ForumWP – Forum & Discussion Board Plugin fixed vulnerable versions: >= * <= 2.0.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.